by Melodic Software
Fifteen safety guards that block secret/credential writes, hardcoded machine-specific paths, git hook-bypass attempts, irreversible git operations (force-push, reset --hard, worktree-wide checkout/restore discards), Bash file-write workarounds that circumvent Write/Edit hooks, Windows drive-root /tmp writes (POSIX /tmp, C:\tmp, \tmp), an EXPORTED MSYS_NO_PATHCONV / MSYS2_ARG_CONV_EXCL that unconverts a later path argument on Windows, a Bash recursive `rm` whose target normalizes to a filesystem root (`/`, the MSYS-translated bare backslash, `~`, `$HOME`, a drive root such as `C:\` or `/c`, a WSL or cygdrive mount root), that carries `--no-preserve-root`, that names an empty or bare-variable operand, or that resolves outside the session's git tree, temp directories and scratchpad (Bash only; PowerShell `Remove-Item -Recurse` is not covered), multi-line `git commit -m` messages (an actual-newline `-m` mangles across shells; single-line `-m` passes), commit subjects and gh pr create titles that violate the repo's tracked team convention (when one is declared in .claude/source-control.md), (advisory) hallucinated CLI flags, (advisory) /plugin:skill references that do not resolve, (advisory) markdown citing a repo path the repo's own history shows was removed, (advisory, opt-in) un-throttled Workflow fan-out that risks burst 529s, and (advisory, opt-in) direct gh pr create calls bypassing this marketplace's own pull-request skill. Each guard is independently toggleable.
Claude Code1 Skill