guard

GitHub

提供全面的安全模式,结合破坏性命令警告和目录级编辑限制,防止误操作。适用于生产环境调试或执行高风险命令时锁定系统范围,确保操作安全。

.agents/skills/gstack-guard/SKILL.md XLearnity/gstack

触发场景

用户请求 'guard mode' 用户请求 'full safety' 用户请求 'lock it down' 用户请求 'maximum safety'

安装

npx skills add XLearnity/gstack --skill guard -g -y
更多选项

非标准路径

npx skills add https://github.com/XLearnity/gstack/tree/main/.agents/skills/gstack-guard -g -y

不安装直接使用

npx skills use XLearnity/gstack@guard

指定 Agent (Claude Code)

npx skills add XLearnity/gstack --skill guard -a claude-code -g -y

安装 repo 全部 skill

npx skills add XLearnity/gstack --all -g -y

预览 repo 内 skill

npx skills add XLearnity/gstack --list

SKILL.md

Frontmatter
{
    "name": "guard",
    "description": "Full safety mode: destructive command warnings + directory-scoped edits.\nCombines \/careful (warns before rm -rf, DROP TABLE, force-push, etc.) with\n\/freeze (blocks edits outside a specified directory). Use for maximum safety\nwhen touching prod or debugging live systems. Use when asked to \"guard mode\",\n\"full safety\", \"lock it down\", or \"maximum safety\"."
}

Safety Advisory: This skill includes safety checks that check bash commands for destructive operations (rm -rf, DROP TABLE, force-push, git reset --hard, etc.) before execution, and verify file edits are within the allowed scope boundary before applying, and verify file writes are within the allowed scope boundary before applying. When using this skill, always pause and verify before executing potentially destructive operations. If uncertain about a command's safety, ask the user for confirmation before proceeding.

/guard — Full Safety Mode

Activates both destructive command warnings and directory-scoped edit restrictions. This is the combination of /careful + /freeze in a single command.

Dependency note: This skill references hook scripts from the sibling /careful and /freeze skill directories. Both must be installed (they are installed together by the gstack setup script).

mkdir -p ~/.gstack/analytics
echo '{"skill":"guard","ts":"'$(date -u +%Y-%m-%dT%H:%M:%SZ)'","repo":"'$(basename "$(git rev-parse --show-toplevel 2>/dev/null)" 2>/dev/null || echo "unknown")'"}'  >> ~/.gstack/analytics/skill-usage.jsonl 2>/dev/null || true

Setup

Ask the user which directory to restrict edits to. Use AskUserQuestion:

  • Question: "Guard mode: which directory should edits be restricted to? Destructive command warnings are always on. Files outside the chosen path will be blocked from editing."
  • Text input (not multiple choice) — the user types a path.

Once the user provides a directory path:

  1. Resolve it to an absolute path:
FREEZE_DIR=$(cd "<user-provided-path>" 2>/dev/null && pwd)
echo "$FREEZE_DIR"
  1. Ensure trailing slash and save to the freeze state file:
FREEZE_DIR="${FREEZE_DIR%/}/"
STATE_DIR="${CLAUDE_PLUGIN_DATA:-$HOME/.gstack}"
mkdir -p "$STATE_DIR"
echo "$FREEZE_DIR" > "$STATE_DIR/freeze-dir.txt"
echo "Freeze boundary set: $FREEZE_DIR"

Tell the user:

  • "Guard mode active. Two protections are now running:"
  • "1. Destructive command warnings — rm -rf, DROP TABLE, force-push, etc. will warn before executing (you can override)"
  • "2. Edit boundary — file edits restricted to <path>/. Edits outside this directory are blocked."
  • "To remove the edit boundary, run /unfreeze. To deactivate everything, end the session."

What's protected

See /careful for the full list of destructive command patterns and safe exceptions. See /freeze for how edit boundary enforcement works.

版本历史

  • dbd98af 当前 2026-07-25 09:18

同 Skill 集合

.agents/skills/gstack-benchmark/SKILL.md
.agents/skills/gstack-browse/SKILL.md
.agents/skills/gstack-canary/SKILL.md
.agents/skills/gstack-careful/SKILL.md
.agents/skills/gstack-document-release/SKILL.md
.agents/skills/gstack-freeze/SKILL.md
.agents/skills/gstack-investigate/SKILL.md
.agents/skills/gstack-land-and-deploy/SKILL.md
.agents/skills/gstack-plan-design-review/SKILL.md
.agents/skills/gstack-plan-eng-review/SKILL.md
.agents/skills/gstack-qa-only/SKILL.md
.agents/skills/gstack-retro/SKILL.md
.agents/skills/gstack-review/SKILL.md
.agents/skills/gstack-setup-browser-cookies/SKILL.md
.agents/skills/gstack-setup-deploy/SKILL.md
.agents/skills/gstack-ship/SKILL.md
.agents/skills/gstack-unfreeze/SKILL.md
.agents/skills/gstack-upgrade/SKILL.md
benchmark/SKILL.md
browse/SKILL.md
canary/SKILL.md
careful/SKILL.md
codex/SKILL.md
document-release/SKILL.md
freeze/SKILL.md
gstack-upgrade/SKILL.md
guard/SKILL.md
investigate/SKILL.md
land-and-deploy/SKILL.md
plan-design-review/SKILL.md
plan-eng-review/SKILL.md
qa-only/SKILL.md
retro/SKILL.md
review/SKILL.md
setup-browser-cookies/SKILL.md
setup-deploy/SKILL.md
ship/SKILL.md
unfreeze/SKILL.md
.agents/skills/gstack-design-consultation/SKILL.md
.agents/skills/gstack-design-review/SKILL.md
.agents/skills/gstack-office-hours/SKILL.md
.agents/skills/gstack-plan-ceo-review/SKILL.md
.agents/skills/gstack-qa/SKILL.md
.agents/skills/gstack/SKILL.md
design-consultation/SKILL.md
design-review/SKILL.md
office-hours/SKILL.md
plan-ceo-review/SKILL.md
qa/SKILL.md

元信息

文件数
0
版本
dbd98af
Hash
05cd13b4
收录时间
2026-07-25 09:18

首页 - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-08-28 21:43
浙ICP备14020137号-1 $访客地图$