Nah
nah is a local safety guard for Claude Code. It runs before tool use and classifies actions by what they actually do, so safe operations can proceed, ambiguous operations ask for confirmation, and clearly dangerous operations are blocked. It protects Bash commands, file reads and writes, edits, searches, notebook edits, and MCP tools using deterministic local rules with no package install or network call required by default.
Works with: Claude Code, Cursor, Claude Desktop, Codex CLI, Gemini CLI, Cline, Windsurf, VS Code
Category: Productivity — see all ranked ›
Work: Agent configuration
Who it is for: Agent operator
“Reproducible benchmark cmd; says its own counts double-count across danger classes”
- tashan score: 72.0
- Expertise: 90.0 (deep)
- Adoption: 1 repos
- Health: active
- GitHub stars: 457
- Contributors: 7
- License: MIT
Security audit
Not scanned yet. We audit npm-published capabilities for known advisories, install-time scripts and permission surface; this one has no npm package we can resolve, or has not reached the queue.
source ↗ · plugin:manuelschipper/nah/nah
Already running this? npx tashan-cli doctor checks your whole config against the Index — how it works ›