Safety Guard

affaan-m/ECC/skills/safety-guard

作者 affaan-mef648e01899ba3e8dc6371642deaaf64b4477775無授權條款275K 個星標收錄於 2026年10月9日更新於 2026年10月9日儲存庫4 天前更新

Guard against destructive operations with three modes: Careful intercepts dangerous commands (rm -rf, git push --force, DROP TABLE) for confirmation, Freeze locks writes to one directory, and Guard combines both via PreToolUse hooks. Use when working on production systems, running agents autonomously, restricting edits to a directory, or during migrations, deploys, and data changes.

僅含說明Security
AI 產生的概覽

透過三種保護模式防範破壞性指令,並將檔案寫入限制在指定目錄內。

功能
Safety Guard 提供三種保護模式:Careful 會攔截 rm -rf、git push --force、DROP TABLE 等破壞性指令並要求確認;Freeze 將檔案編輯鎖定在指定目錄樹內;Guard 同時啟用兩者。它透過 PreToolUse 鉤子攔截 Bash、Write、Edit 和 MultiEdit 工具呼叫,並在執行前依目前規則檢查。被阻擋的動作會記錄到日誌檔案。
適用情境
適用於在正式環境系統上工作、代理自主執行的情境,以及需要將編輯限制在特定目錄時。也適合遷移、部署和資料變更等敏感作業。
執行需求
不包含指令碼,僅為說明性指示。依賴 PreToolUse 鉤子攔截 Bash、Write、Edit 和 MultiEdit 工具呼叫,並在使用者家目錄下寫入日誌檔案。

Safety Guard — Prevent Destructive Operations

When to Use

  • When working on production systems
  • When agents are running autonomously (full-auto mode)
  • When you want to restrict edits to a specific directory
  • During sensitive operations (migrations, deploys, data changes)

How It Works

Three modes of protection:

Mode 1: Careful Mode

Intercepts destructive commands before execution and warns:

Watched patterns:- rm -rf (especially /, ~, or project root)- git push --force- git reset --hard- git checkout . (discard all changes)- DROP TABLE / DROP DATABASE- docker system prune- kubectl delete- chmod 777- sudo rm- npm publish (accidental publishes)- Any command with --no-verify

When detected: shows what the command does, asks for confirmation, suggests safer alternative.

Mode 2: Freeze Mode

Locks file edits to a specific directory tree:

/safety-guard freeze src/components/

Any Write/Edit outside src/components/ is blocked with an explanation. Useful when you want an agent to focus on one area without touching unrelated code.

Mode 3: Guard Mode (Careful + Freeze combined)

Both protections active. Maximum safety for autonomous agents.

/safety-guard guard --dir src/api/ --allow-read-all

Agents can read anything but only write to src/api/. Destructive commands are blocked everywhere.

Unlock

/safety-guard off

Implementation

Uses PreToolUse hooks to intercept Bash, Write, Edit, and MultiEdit tool calls. Checks the command/path against the active rules before allowing execution.

Integration

  • Enable by default for codex -a never sessions
  • Pair with observability risk scoring in ECC 2.0
  • Logs all blocked actions to ~/.claude/safety-guard.log

來源與署名

來源:affaan-m/ECC位於skills/safety-guard提交ef648e0

授權條款: 無授權條款

內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。

檢舉或申請下架