{"repo":"lasso-security/claude-hooks","free":true,"listed":false,"github":"https://github.com/lasso-security/claude-hooks","clone":"git clone https://github.com/lasso-security/claude-hooks.git","description":"Lasso security integrations for Claude Code, including prompt-injection defenses","language":"TypeScript","stars":262,"topics":["agent","ai","claude-code","claude-desktop","coding-agent","hooks","prompt-injection","prompt-injection-llm-security"],"license":"MIT","category":"security-tools","readme_excerpt":"Claude Hooks A collection of security and utility hooks for Claude Code. Hooks allow you to extend Claude Code's behavior by running custom scripts at key points during execution. Research Paper : For detailed analysis of indirect prompt injection vulnerabilities in Claude Code, see: The Hidden Backdoor in Claude Coding Assistant --- Available Hooks 🛡️ Prompt Injection Defender Defense against indirect prompt injection attacks. Scans tool outputs (files, web pages, command results) for injection attempts and warns Claude about suspicious content via PostToolUse hooks. --- Quick Start Option 1: Interactive Installation (Recommended) If you have this repo added as a Claude Code skill, simply tell Claude: Claude will handle the entire installation process for you. Option 2: Install Script What gets installed The installer copies hook files to your project and configures Claude Code: 📖 For manual installation and more options, see INSTALLATION.md --- Understanding Prompt Injection The Problem: Indirect Prompt Injection When Claude Code reads files, fetches web pages, or runs commands, malicious instructions can be hidden in that content: Without protection, Claude might follow these hidden instructions. The defender scans all tool outputs and warns Claude when suspicious patterns are detected. Direct vs Indirect Injection - Direct : Malicious instructions from the user directly (not our focus) - Indirect : Malicious instructions hidden in content Claude reads (our focus) Attack","default_branch":null,"files":null,"tree":[],"storefront":"/r/lasso-security","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/lasso-security/claude-hooks/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}