什麼是 destructive-command-guard?
透過基於 Rust 的 Claude Code 掛鉤在執行前阻止危險命令。在設定代理安全防護、設定破壞性指令阻止或審核 CLI 保護規則時使用。用於 git 重設保護、rm -rf 攔截、強制推送封鎖、基於套件的命令過濾和 PreToolUse 掛鉤安全。 來源:oakoss/agent-skills。
透過基於 Rust 的 Claude Code 掛鉤在執行前阻止危險命令。在設定代理安全防護、設定破壞性指令阻止或審核 CLI 保護規則時使用。用於 git 重設保護、rm -rf 攔截、強制推送封鎖、基於套件的命令過濾和 PreToolUse 掛鉤安全。
透過命令列快速安裝 destructive-command-guard AI 技能到你的開發環境
來源:oakoss/agent-skills。
A high-performance Claude Code hook that intercepts and blocks destructive commands before they execute. Written in Rust with SIMD-accelerated filtering via the memchr crate and Aho-Corasick multi-pattern matching for sub-millisecond latency. Assumes agents are well-intentioned but fallible.
DCG uses a whitelist-first architecture: safe patterns are checked before destructive patterns, and unrecognized commands are allowed by default (fail-safe). This ensures legitimate workflows are never broken while known dangerous patterns are always blocked. DCG runs as a PreToolUse hook in Claude Code, receiving JSON on stdin for each Bash tool invocation and returning exit code 0 (allow) or 2 (block). It only i...
The processing pipeline has four stages: JSON parsing, command normalization (strips absolute paths like /usr/bin/git), SIMD quick-reject filter (skips regex for commands without git or rm), and pattern matching. The memchr crate provides hardware-accelerated substring search (SSE2/AVX2 on x8664, NEON on ARM), while Aho-Corasick handles multi-pattern matching in O(n) time regardless of pattern count.
為搜尋與 AI 引用準備的穩定欄位與指令。
npx skills add https://github.com/oakoss/agent-skills --skill destructive-command-guard透過基於 Rust 的 Claude Code 掛鉤在執行前阻止危險命令。在設定代理安全防護、設定破壞性指令阻止或審核 CLI 保護規則時使用。用於 git 重設保護、rm -rf 攔截、強制推送封鎖、基於套件的命令過濾和 PreToolUse 掛鉤安全。 來源:oakoss/agent-skills。
開啟你的終端機或命令列工具(如 Terminal、iTerm、Windows Terminal 等) 複製並執行以下指令:npx skills add https://github.com/oakoss/agent-skills --skill destructive-command-guard 安裝完成後,技能將自動設定到你的 AI 程式設計環境中,可以在 Claude Code、Cursor 或 OpenClaw 中使用
https://github.com/oakoss/agent-skills