sagaga144/claude-harness-bootstrap
Generate a project-specific Claude Code harness (CLAUDE.md, hooks, subagents, commands) from one paragraph. Any stack. Eval-tested.
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · Pre-tool screening hook · No YOLO mode · details
Copy this rig
# review before running: this installs third-party code
$ npx degit sagaga144/claude-harness-bootstrap/examples/desktop-notes-app/.claude ./rig-claude-harness-bootstrap # inspect, then merge into .claude/ MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit sagaga144/claude-harness-bootstrap/examples/juce-audio-plugin/.claude/skills/orch-add-feature .claude/skills/orch-add-feature $ npx degit sagaga144/claude-harness-bootstrap/examples/ml-paper-reproduction/.claude/skills/reproducibility-check .claude/skills/reproducibility-check $ npx degit sagaga144/claude-harness-bootstrap/plugin/skills/init .claude/skills/init
$ curl -fsSL --create-dirs -o .claude/agents/app-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/desktop-notes-app/.claude/agents/app-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/desktop-notes-app/.claude/agents/correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/planner.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/desktop-notes-app/.claude/agents/planner.md $ curl -fsSL --create-dirs -o .claude/agents/test-writer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/desktop-notes-app/.claude/agents/test-writer.md $ curl -fsSL --create-dirs -o .claude/agents/correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/juce-audio-plugin/.claude/agents/correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/planner.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/juce-audio-plugin/.claude/agents/planner.md $ curl -fsSL --create-dirs -o .claude/agents/plugin-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/juce-audio-plugin/.claude/agents/plugin-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/ml-paper-reproduction/.claude/agents/correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/ml-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/ml-paper-reproduction/.claude/agents/ml-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/backend-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/monorepo-saas/.claude/agents/backend-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/monorepo-saas/.claude/agents/correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/frontend-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/monorepo-saas/.claude/agents/frontend-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/planner.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/monorepo-saas/.claude/agents/planner.md $ curl -fsSL --create-dirs -o .claude/agents/security-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/monorepo-saas/.claude/agents/security-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/client-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/multiplayer-game-server/.claude/agents/client-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/go-correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/multiplayer-game-server/.claude/agents/go-correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/planner.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/multiplayer-game-server/.claude/agents/planner.md $ curl -fsSL --create-dirs -o .claude/agents/server-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/multiplayer-game-server/.claude/agents/server-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/state-integrity-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/multiplayer-game-server/.claude/agents/state-integrity-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/contract-auditor.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/solidity-nft-marketplace/.claude/agents/contract-auditor.md $ curl -fsSL --create-dirs -o .claude/agents/contracts-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/solidity-nft-marketplace/.claude/agents/contracts-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/planner.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/solidity-nft-marketplace/.claude/agents/planner.md $ curl -fsSL --create-dirs -o .claude/agents/cli-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/terraform-aws-infra/.claude/agents/cli-engineer.md $ curl -fsSL --create-dirs -o .claude/agents/infra-correctness-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/terraform-aws-infra/.claude/agents/infra-correctness-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/infra-security-reviewer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/terraform-aws-infra/.claude/agents/infra-security-reviewer.md $ curl -fsSL --create-dirs -o .claude/agents/terraform-engineer.md https://raw.githubusercontent.com/sagaga144/claude-harness-bootstrap/main/examples/terraform-aws-infra/.claude/agents/terraform-engineer.md
Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.
{
"permissions": {
"deny": [
"Read(.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Read(~/.aws/**)",
"Bash(ssh:*)",
"Bash(scp:*)",
"Bash(curl:*)",
"Bash(wget:*)",
"Read(.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Read(~/.aws/**)",
"Bash(ssh:*)",
"Bash(scp:*)",
"Bash(curl:*)",
"Bash(wget:*)"
]
},
"hooks": {
"PreToolUse": [
{
"matcher": "Bash",
"hooks": [
{
"type": "command",
"command": "node .claude/hooks/guard-bash-push.cjs"
},
{
"type": "command",
"command": "node .claude/hooks/guard-secret-scan.cjs"
},
{
"type": "command",
"command": "node .claude/hooks/guard-bash-push.cjs"
},
{
"type": "command",
"command": "node .claude/hooks/guard-secret-scan.cjs"
}
]
},
{
"matcher": "Write",
"hooks": [
{
"type": "command",
"command": "node .claude/hooks/guard-adhoc-doc.cjs"
},
{
"type": "command",
"command": "node .claude/hooks/guard-adhoc-doc.cjs"
}
]
},
{
"matcher": "Edit|Write",
"hooks": [
{
"type": "command",
"command": "node .claude/hooks/guard-protected-files.cjs"
},
{
"type": "command",
"command": "node .claude/hooks/guard-protected-files.cjs"
}
]
}
]
}
} Skills (3)
Subagents (26)
| app-engineer model: sonnet | Implements features across the Tauri/Rust backend and the Svelte/TypeScript frontend for Local Notes. Use for "add a feature", "build X", or any concrete implementation work once a plan exists (or for |
| correctness-reviewer model: haiku | Reviews recent changes for "compiles but wrong" failure modes across both the TypeScript/Svelte frontend and the Rust backend — type errors, unsafe path handling, panics on user-derived input. Use bef |
| planner model: sonnet | Turns a feature request into a file-precise implementation plan before any code is written. Use for "how should I build this", "plan this", or before any change that touches both the Svelte frontend a |
| test-writer model: sonnet | Writes tests in the project's real test frameworks — Vitest for the Svelte/TypeScript frontend, cargo test for the Rust backend. Use for "write tests", "add test coverage", or after app-engineer imple |
| correctness-reviewer model: sonnet | Reviews Driftline's C++/JUCE code for correctness bugs AND real-time audio-thread safety violations — the two are treated as one inseparable concern for this project, not two different checks. Use bef |
| planner model: sonnet | Produces a file-precise implementation plan before code gets written — new DSP features, new parameters, architecture changes. Use before any non-trivial change, especially anything touching the audio |
| plugin-engineer model: sonnet | Implements DSP and GUI changes for the Driftline JUCE plugin — both the audio-processing (PluginProcessor/DelayLine) and GUI (PluginEditor) halves of the same C++/JUCE codebase. Use for adding paramet |
| correctness-reviewer model: sonnet | Reviews changes to src/*.py and config.yaml for "runs fine but is wrong" bugs — the failure modes a Python linter/syntax check can't catch (data leakage, shape bugs, silently-wrong metrics, reproducib |
| ml-engineer model: sonnet | Implements and modifies the data pipeline, model, and training loop (src/data.py, src/model.py, src/train.py, src/utils.py) and the exploration/results notebooks. Use for "add X", "change the architec |
| backend-engineer model: sonnet | Implements and modifies the Rust/Axum backend in crates/backend. Use for any backend route, handler, middleware, or data-layer change. |
| correctness-reviewer model: sonnet | Read-only correctness review across all three packages (Rust backend, React frontend, shared contracts) — "compiles but wrong" bugs and, specifically, contract-parity drift between the three. Use befo |
| frontend-engineer model: sonnet | Implements and modifies the React/TypeScript frontend in packages/frontend. Use for any UI screen, component, or client-side API-consuming change. |
| planner model: sonnet | Produces a file-precise implementation plan before code is written. Use for any non-trivial feature or change that spans more than one package (backend + contracts + frontend), or whenever the user as |
| security-reviewer model: sonnet | Read-only security review of auth, session/token handling, and payment/billing code across the backend and frontend. Use before anything on these surfaces ships, and whenever the user says "secure"/"a |
| client-engineer model: sonnet | Implements and modifies the plain-JavaScript canvas client -- rendering, input capture, and WebSocket connection handling. Use for any "add/change/fix the client/UI/rendering" request. |
| go-correctness-reviewer model: sonnet | Reviews Go server changes for "compiles but wrong" failure modes -- unhandled errors, panics reachable from client input, goroutine/channel races, and broadcast-loop timing bugs. Use after any server |
| planner model: sonnet | Thin project-specific wrapper around Claude Code's built-in Plan behavior -- produces a file-precise implementation plan before code gets written. Use for "how should I build this" / "plan this" / any |
| server-engineer model: sonnet | Implements and modifies the Go WebSocket game server -- connection handling, the game loop/broadcast ticker, and server-side game-state logic. Use for any "add/change/fix the server" request. |
| state-integrity-reviewer model: sonnet | Reviews the client-input trust boundary -- everywhere the server accepts a value from a client and everywhere the client trusts a value about another player. This project has no accounts/auth, but it |
| contract-auditor model: sonnet | Reviews Solidity contract changes for both "compiles but wrong" correctness bugs and security/trust-boundary holes before anything is considered ready to deploy. Use before any deploy, and after any c |
| contracts-engineer model: sonnet | Implements and modifies the Solidity contracts, Hardhat config, deploy scripts, and their TypeScript tests. Use for any "add a feature", "implement X", or "fix this contract bug" request. |
| planner model: sonnet | Produces a file-precise implementation plan before coding starts on a new feature (a new contract, a new marketplace mechanic, a migration to a proxy pattern, etc.). Use for "how should I build this" |
| cli-engineer model: sonnet | Implements and edits the Python Typer CLI (cli/infra_cli/*) that wraps terraform plan/apply with environment guardrails. Use for "add a CLI command", "new flag", "new guardrail", or a CLI bug/crash. |
| infra-correctness-reviewer model: sonnet | Correctness review across both halves of this project — Terraform (validate/plan-diff sanity, module wiring) and the Python CLI (mypy/ruff/pytest, guardrail logic bugs). Use before treating any change |
| infra-security-reviewer model: sonnet | The stakes-justified reviewer for this project — gates any change touching RDS, security groups, IAM, S3 public access, or the CLI's guardrail/confirmation logic. A missed finding here can misconfigur |
| terraform-engineer model: sonnet | Implements and edits Terraform modules (infra/modules/*) and environment configs (infra/environments/*) for the VPC/ECS/RDS/S3 stack. Use for "add a module", "new AWS resource", "new environment", or |
Hooks (18)
| event | matcher | runs |
|---|---|---|
| SessionStart | * | node .claude/hooks/critical-rules.cjs |
| PreToolUse | Bash | node .claude/hooks/guard-bash-push.cjs |
| PreToolUse | Bash | node .claude/hooks/guard-secret-scan.cjs |
| PreToolUse | Write | node .claude/hooks/guard-adhoc-doc.cjs |
| PreToolUse | Edit|Write | node .claude/hooks/guard-protected-files.cjs |
| PostToolUse | Edit|Write | node .claude/hooks/warn-debug-print.cjs |
| PostToolUse | Edit|Write | node .claude/hooks/note-filesystem-guard.cjs |
| PreModelSwitch | * | node .claude/hooks/cost-guard.cjs |
| Stop | * | node .claude/hooks/build-gate.cjs |
| SessionStart | * | node .claude/hooks/critical-rules.cjs |
| PreToolUse | Bash | node .claude/hooks/guard-bash-push.cjs |
| PreToolUse | Bash | node .claude/hooks/guard-secret-scan.cjs |
| PreToolUse | Write | node .claude/hooks/guard-adhoc-doc.cjs |
| PreToolUse | Edit|Write | node .claude/hooks/guard-protected-files.cjs |
| PostToolUse | Edit|Write | node .claude/hooks/warn-debug-print.cjs |
| PostToolUse | Edit|Write | node .claude/hooks/warn-realtime-unsafe.cjs |
| PreModelSwitch | * | node .claude/hooks/cost-guard.cjs |
| Stop | * | node .claude/hooks/build-gate.cjs |
Slash commands (18)
/verify/resume-session/save-session/verify/plan-experiment/resume-session/save-session/verify/resume-session/save-session/verify/resume-session/save-session/verify/predeploy-check/verify/plan-infra-change/verify
Permissions
deny (16)
Read(.env)
Read(**/.env)
Read(~/.ssh/**)
Read(~/.aws/**)
Bash(ssh:*)
Bash(scp:*)
Bash(curl:*)
Bash(wget:*)
Read(.env)
Read(**/.env)
Read(~/.ssh/**)
Read(~/.aws/**)
Bash(ssh:*)
Bash(scp:*)
Bash(curl:*)
Bash(wget:*)
ask (0)
—
allow (0)
—
Similar rigs
theishandubey/claude-config
A complete Claude Code setup. An agent roster, an orchestration playbook, safe defaults and curated skills, installed with one command.
Orchestrator 4.0k tok ·
Joan266/claude-dotfiles
—
Pragmatist 831 tok ·
BillDX/spicy-to-dark-factory-starter
Workshop starter for 'From Spicy Autocomplete to Dark Factory: Agentic Coding in Practice' — a FastAPI mini-app with a full Claude Code harness (agents, slash commands, hooks, sandbox settings) and self-paced exercises.
Orchestrator 706 tok ·
AI-BrandFactory/claude-code-starter-pack
Working templates for Claude Code primitives: slash commands, skills, hooks, subagents, MCP configs, Agent SDK starters. Current to Opus 4.7, April 2026.
Fort Knox 584 tok ·