theogbrand/yoink
A plugin to clone dependencies you don't trust. No more supply chain attacks.
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
Copy this rig
# review before running: this installs third-party code
$ npx degit theogbrand/yoink/.claude ./rig-yoink # inspect, then merge into .claude/ MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit theogbrand/yoink/.agents/skills/plugin-settings .claude/skills/plugin-settings $ npx degit theogbrand/yoink/.agents/skills/plugin-structure .claude/skills/plugin-structure $ npx degit theogbrand/yoink/.agents/skills/skill-creator .claude/skills/skill-creator $ npx degit theogbrand/yoink/plugins/yoink/skills/curate-tests .claude/skills/curate-tests $ npx degit theogbrand/yoink/plugins/yoink/skills/decompose .claude/skills/decompose $ npx degit theogbrand/yoink/plugins/yoink/skills/setup .claude/skills/setup $ npx degit theogbrand/yoink/plugins/yoink/skills/yoink .claude/skills/yoink
This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Bash(rm -rf *)",
"Read(**/*.pem)",
"Bash(rm -rf /)",
"Bash(git push --force:*)",
"Bash(sudo *)",
"Read(.env)",
"Bash(rm -rf /*)",
"Read(./.env.*)",
"Read(~/.aws/**)",
"Bash(git push --force*)",
"Bash(rm -rf:*)",
"Read(**/*.key)",
"Read(**/.env.*)",
"Bash(sudo:*)",
"Bash(git reset --hard*)",
"Bash(git reset --hard:*)",
"Read(.env.*)"
],
"ask": [
"Bash(git push:*)",
"Bash(git push *)",
"Bash(git commit:*)",
"Bash(rm *)",
"Bash(rm:*)",
"Bash(git rebase *)",
"Bash(wget *)",
"Bash(npm publish:*)",
"Bash(git commit *)",
"Bash(gh pr merge *)"
]
}
} Skills (7)
Permissions
deny (0)
—
ask (0)
—
allow (4)
Bash(uv run python scripts/orchestration-linter.py:*)
Bash(uv sync:*)
Bash(uv run ruff:*)
Bash(uv run ty:*)
Similar rigs
nizos/tdd-guard
Automated TDD enforcement for Claude Code
Minimalist 1.3k tok ·
PleasePrompto/ductor
Control Claude Code, Codex CLI and Gemini CLI from Telegram. Live streaming, persistent memory, cron jobs, webhooks, Docker sandboxing.
Minimalist 1.9k tok ·
terranc/claude-telegram-bot-bridge
A lightweight Telegram bot that bridges Claude Code to any local folder, with autostart support for remote mobile development.
Minimalist 2.1k tok ·
stefanoginella/aicontainer
Sandboxed devcontainer for running Claude Code, Codex, and OpenCode in bypass / auto-approve mode.
Pragmatist 13.0k tok ·