wellwelwel/lagune
🌊 Lagune is your security copilot as you build, your Blue Team when you audit, whether you're a developer or not (no API key needed).
ARCHETYPE
Pragmatist
A balanced, no-drama setup: some rules, some tools, nothing extreme.
Copy this rig
# review before running: this installs third-party code
$ npx degit wellwelwel/lagune/.claude ./rig-lagune # inspect, then merge into .claude/ MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit wellwelwel/lagune/.claude/skills/architecture .claude/skills/architecture $ npx degit wellwelwel/lagune/.claude/skills/cdp .claude/skills/cdp $ npx degit wellwelwel/lagune/.claude/skills/dashboard .claude/skills/dashboard $ npx degit wellwelwel/lagune/.claude/skills/engineering .claude/skills/engineering $ npx degit wellwelwel/lagune/.claude/skills/simulate .claude/skills/simulate $ npx degit wellwelwel/lagune/.claude/skills/specialize .claude/skills/specialize $ npx degit wellwelwel/lagune/.claude/skills/ui .claude/skills/ui $ npx degit wellwelwel/lagune/.claude/skills/writer .claude/skills/writer
This rig commits no guardrails. Here is the community baseline instead — the deny/ask rules most often found across all 7,204 rigs:
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(**/.env)",
"Read(~/.ssh/**)",
"Bash(rm -rf *)",
"Read(**/*.pem)",
"Bash(rm -rf /)",
"Bash(git push --force:*)",
"Bash(sudo *)",
"Read(.env)",
"Bash(rm -rf /*)",
"Read(./.env.*)",
"Read(~/.aws/**)",
"Bash(git push --force*)",
"Bash(rm -rf:*)",
"Read(**/*.key)",
"Read(**/.env.*)",
"Bash(sudo:*)",
"Bash(git reset --hard*)",
"Bash(git reset --hard:*)",
"Read(.env.*)"
],
"ask": [
"Bash(git push:*)",
"Bash(git push *)",
"Bash(git commit:*)",
"Bash(rm *)",
"Bash(rm:*)",
"Bash(git rebase *)",
"Bash(wget *)",
"Bash(npm publish:*)",
"Bash(git commit *)",
"Bash(gh pr merge *)"
]
}
} Skills (8)
Similar rigs
Luke-Bradford/autonomy-engine
Repo-agnostic engine for running Claude Code autonomy loops against any target repo
Pragmatist 9.9k tok ·
pilyang/vim-action
Vim-style modal text editing (key binding) in any macOS text field — Normal and Visual mode wherever you type
Minimalist 1.6k tok ·
iOfficeAI/AionUi
Open-source 24/7 Cowork app for OpenClaw, Hermes, Claude Code, Codex, OpenCode and 20+ more CLI Agent | Customize your assistants | Team them up|Star if you like it!
Pragmatist 2.0k tok ·
thenickz/agent-dotfiles
AI agent dotfiles: templates + portable skills (persistent memory, architecture, git, github) for Claude Code, opencode, and Codex
Minimalist 1.7k tok ·