Works with
Security Guidance
PreToolUse security-anti-pattern hook for Claude Code. Catches 12 common security risks (command injection, XSS, SQL injection, unsafe deserialization, GitHub Actions workflow injection, eval/new Function code injection) BEFORE the Edit/Write/MultiEdit operation completes. Session-state caching prevents duplicate warnings on the same file+rule combo. Stdlib only — no dependencies. Use when you want a safety net durin
Optimized workflow
This edition turns the source methodology into a repeatable agent workflow with explicit inputs, checkpoints and deliverables.
Quality standard
- Confirm scope and missing inputs before execution
- Ground decisions in available evidence and preserve source constraints
- Return an actionable result with assumptions, risks and next steps
Agent compatibility
The same core method is packaged for Claude, Codex, GPT, Gemini, Cursor and OpenCode.
Permissions & security
Source verified · conversion tested · security signals reviewed