Claude Code safety guard plugin. AST-based bash command classification
-
Updated
Mar 15, 2026 - TypeScript
Claude Code safety guard plugin. AST-based bash command classification
Defense-in-depth against curl|bash attacks. Four-layer shell interception (accept-line, ZLE paste, hardened wrappers, preexec audit) with YARA-based detection. Catches malicious piped installs before execution — where macOS Gatekeeper can't.
Add a description, image, and links to the shell-security topic page so that developers can more easily learn about it.
To associate your repository with the shell-security topic, visit your repo's landing page and select "manage topics."