claude-code-config-trailofbits
Installation
SKILL.md
Claude Code Config (Trail of Bits)
Skill by ara.so — Claude Code Skills collection.
Trail of Bits' opinionated configuration for Claude Code covering sandboxing, permission deny rules, lifecycle hooks, statusline, global CLAUDE.md, and recommended tooling. This skill helps you install and configure the Trail of Bits defaults for secure, high-throughput AI-assisted development.
What It Does
This project provides:
- Privacy-first settings — disables telemetry, error reporting, and feedback surveys
- Security hardening — permission deny rules blocking SSH keys, cloud credentials, shell config, crypto wallets
- Lifecycle hooks —
PreToolUseblocks onrm -rfand direct push to main - Statusline — two-line terminal status bar showing model, context usage, cost, cache hit rate
- Global CLAUDE.md — development philosophy, code quality limits, language-specific toolchains
- Sandboxing guide — built-in
/sandbox, devcontainer, and remote droplet options - Recommended tools — Ghostty terminal,
ruff,ast-grep,oxlint,cargo-deny, etc.