โ Browse
protect-secrets
karanb192 โ
524
A PreToolUse hook that screens every Read, Edit, Write, and Bash call against tiered patterns to block or prompt on attempts to access or exfiltrate sensitive files (.env, SSH keys, cloud credentials, keystores) and dangerous shell commands. Matches are denied or converted to a prompt with the exact pattern id and reason, with tunable safety levels (critical/high/strict) via the HOOK_SAFETY_LEVEL environment variable.
Install
> /plugin marketplace add karanb192/claude-code-hooks/tree/HEAD/plugins/protect-secrets
> /plugin install protect-secrets
Source: https://github.com/karanb192/claude-code-hooks/tree/HEAD/plugins/protect-secrets
What it's made of
1 hook
- Commands
- 0
- Agents
- 0
- Skills
- 0
- MCP servers
- 0
- Hooks
- 1 ยท PreToolUse
What it needs & plugs into
- API keys
- none
- Paid services
- none detected
- External tools
node- Talks to
- nothing external detected
Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.
Is this your plugin?
Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (karanb192).