Shifty-Eye-Games/claude-mods/tree/main/plugins/memory-guards
memory-guards
一個 Claude Code 外掛,會攔截工具呼叫,拒絕 Claude 記憶筆記標記為危險的命令,並說明原因與安全替代方案。
關於這個 mod
memory-guards 是 Shifty-Eye-Games/claude-mods 私人 marketplace 的一部分。它註冊一個 tool.call 掛鉤(plugins/memory-guards/hooks/register.ts),攔截 Claude 記憶筆記警告過的命令——例如 impeccable update --help、透過 cloudflared 路由 shiftyeyegames.com 的 DNS,或在 cswap add 前執行 /logout——阻止這些命令,並說明原因與安全替代方案。使用 claude plugin marketplace add Shifty-Eye-Games/claude-mods 加上 claude plugin install memory-guards@claude-mods 安裝,再透過 /plugin 或 ~/.claude/settings.json 中的 extraKnownMarketplaces 啟用自動更新。這個儲存庫是私人儲存庫,因此每台機器都需要非互動式 GitHub 憑證(SSH 金鑰或已儲存的 HTTPS 憑證)。
安裝
請先查看作者 README,確認 marketplace 與外掛名稱;指令可能隨儲存庫結構而變動。
claude plugin marketplace add Shifty-Eye-Games/claude-mods claude plugin install memory-guards
原文 / README
claude-mods
Private Claude Code marketplace for Tuncer's mods: function-hook plugins that run inside every Claude Code session on his machines (MacBook Pro, MacBook Air, therig, the 5090 PC).
| Plugin | What it does |
| --- | --- |
| memory-guards | Refuses the footgun commands Claude's memory notes warn about (for example impeccable update --help, routing shiftyeyegames.com DNS through cloudflared, /logout before cswap add) and says why, with the safe alternative. |
| kb-health | Shows KB health in the status line on the machine that runs the KB. It stays quiet on machines without the KB snapshot job. |
| machine-tag | Prefixes session titles with the machine's emoji tag (💻 MBP, 🪶 Air, 🎮 Rig, 🔥 5090), so pinned sessions show which computer they run on. /machine-tag <emoji> <word> overrides it per machine. |
Install on a machine
claude plugin marketplace add Shifty-Eye-Games/claude-mods
claude plugin install memory-guards@claude-mods
claude plugin install kb-health@claude-mods
claude plugin install machine-tag@claude-mods
Then turn on auto-update: in /plugin, open Marketplaces, pick claude-mods and enable auto-update, or set it in ~/.claude/settings.json:
"extraKnownMarketplaces": {
"claude-mods": {
"source": { "source": "github", "repo": "Shifty-Eye-Games/claude-mods" },
"autoUpdate": true
}
}
Each session start then pulls main. No versions are set, so every commit is an update.
The repo is private, so each machine needs GitHub access without a prompt: an SSH key GitHub knows (Claude Code tries ssh -T [email protected] first), or stored HTTPS credentials (gh auth login then gh auth setup-git, or Git Credential Manager on Windows). Without them the clone and the updates fail silently and the machine keeps its last copy.
Machines that loaded these mods from local folders before must drop those folders from CLAUDE_CODE_PLUGIN_DIRS in ~/.claude/settings.json, or each mod loads twice.
Change a mod
- Edit it under
plugins/<name>/. - Check it:
claude plugin validate plugins/<name>andclaude plugin test plugins/<name>. - Push to
main. Versions are left unset on purpose, so each commit reaches every machine at its next session start.
How mods work, and the engine rules that bite, are in Claude's memory note on Claude Code mods.
Security
Auto-update is on, so whatever lands on main runs in every session on all four machines. Only org admins can push here (the org's default member permission is read). Keep it that way: never give anyone else write access.
