PlugMyPlugin
โ† Browse

protect-secrets

karanb192 โ˜… 524

A PreToolUse hook that screens every Read, Edit, Write, and Bash call against tiered patterns to block or prompt on attempts to access or exfiltrate sensitive files (.env, SSH keys, cloud credentials, keystores) and dangerous shell commands. Matches are denied or converted to a prompt with the exact pattern id and reason, with tunable safety levels (critical/high/strict) via the HOOK_SAFETY_LEVEL environment variable.

Security DevOps free runs shell

Install

> /plugin marketplace add karanb192/claude-code-hooks/tree/HEAD/plugins/protect-secrets
> /plugin install protect-secrets

Source: https://github.com/karanb192/claude-code-hooks/tree/HEAD/plugins/protect-secrets

What it's made of

1 hook

Commands
0
Agents
0
Skills
0
MCP servers
0
Hooks
1 ยท PreToolUse

What it needs & plugs into

API keys
none
Paid services
none detected
External tools
node
Talks to
nothing external detected

Facts extracted from the plugin's files. Prose generated by claude-haiku-4-5-20251001.

Is this your plugin?

Claim it to keep the card accurate and enter the weekly contest. Requires signing in as the GitHub owner (karanb192).