{"repo":"kaplanelad/shellfirm","free":true,"listed":false,"github":"https://github.com/kaplanelad/shellfirm","clone":"git clone https://github.com/kaplanelad/shellfirm.git","description":"Safety guardrails for ai coding agents and human terminal commands","language":"Rust","stars":927,"topics":["rust","devops","zsh","terminal","shell","devops-tools","prompt","captcha","agent","ai"],"license":"Apache-2.0","category":"cli-tools","readme_excerpt":"shellfirm Think before you execute. Humans make mistakes. AI agents make them faster. shellfirm intercepts dangerous shell commands before the damage is done. --- Features - 100+ patterns across 9 ecosystems (filesystem, git, Kubernetes, Terraform, Docker, AWS, GCP/Azure, Heroku, databases) - 8 shells — Zsh, Bash, Fish, Nushell, PowerShell, Elvish, Xonsh, Oils - Context-aware escalation — harder challenges when connected via SSH, running as root, on protected git branches, or in production Kubernetes clusters - Safe alternative suggestions — actionable safer commands shown alongside every warning - Severity levels with configurable thresholds ( Critical , High , Medium , Low , Info ) - Project policies — share team safety rules via .shellfirm.yaml (additive-only, never weakens) - Audit trail — every intercepted command and decision logged as JSON-lines - Blast radius detection — runtime context signals feed into risk scoring - MCP server — expose shellfirm as an AI tool for Claude Code, Cursor, and other agents --- AI Tool Integration Claude Code One command sets up both automatic safety (hooks) and on-demand analysis (MCP): This adds: - Hooks — every Bash command is checked before execution; risky commands are blocked - MCP — Claude can call shellfirm tools to explain risks and suggest alternatives MCP Tools Tool Description ------ ------------- check command Check if a command is risky — returns severity, matched rules, and alternatives suggest alternative Get safer replace","default_branch":null,"files":null,"tree":[],"storefront":"/r/kaplanelad","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/kaplanelad/shellfirm/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}