Project overview
claude-guard scans Claude Code skills, hooks, MCP configurations, and settings for prompt-injection lures, download-and-execute commands, plaintext endpoints, broad permissions, hidden bidirectional characters, and committed secrets. It redacts secret values, groups findings by severity, and exits with a failure code when a High finding exists, making JSON output suitable for CI. The zero-dependency scanner is offline and heuristic; a clean result is not a sandbox or formal proof of safety.
Repository facts
- Primary language
- JavaScript
- License
- MIT
- Repository updated
- Jun 24, 2026
- Default branch
- main
Resource types
CLI app
Use cases
Security and privacy
Platforms
Claude Code
Runtime
Command lineLocal
Capabilities
Security guardrailVerification and evals
Audience
Security engineers