AI coding agents don't fail by writing evil code — they fail by running correct commands with unintended blast radius. CC Powerpack gates the dangerous ones at the harness level, before execution.
Get the free hooks → Pro suiteEvery git push is scanned first — gitleaks plus a regex layer plus forbidden-file checks.
BLOCKED: credential-shaped string in outgoing diff
rm -rf "$UNSET_VAR", force-push to main, curl | sh, chmod 777, dd of=/dev/* — gated, with the reason fed back to the model.
Agents can't delete other sessions' worktrees or sweep gitlinks into commits with git add -A.
/plugin marketplace add Ludoonus/cc-powerpack
/plugin install cc-powerpack
Requires bash + jq (python3 fallback built in). Optional: gitleaks. 18 functional tests included.
📘 The Operator's Handbook — details + free sample
The operations console for AI coding agents — unified cost, audit, safety & efficiency across every project, from the transcripts you already have. Free CLI.
Free local token-usage report — where your tokens went and your cache hit rate. Stdlib only.
A project skeleton that drops your agent into full guardrails from commit #1. Free.
18-chapter guide to running AI coding agents safely and efficiently. Get it →