Skip to content

Secure Claude Code 1.1.7: Claude Code Plugin + 5 New Guard Signatures

Choose a tag to compare

@github-actions github-actions released this 25 Mar 08:21
· 43 commits to main since this release

Secure Claude Code 1.1.7 is the clean green public release for the new Claude Code plugin path and the latest guard additions.

Why this release matters

  • install from Claude Code with /plugin marketplace add efij/secure-claude-code and /plugin install secure-claude-code@secure-claude-code
  • keep the CLI path for minimal, balanced, strict, doctor, validate, update, uninstall, and local audit review
  • ship a balanced plugin baseline through .claude-plugin/ and generated hooks/hooks.json

New guard signatures included

  • plugin-manifest-guard
  • mcp-install-source-allowlist
  • browser-profile-export-guard
  • git-history-rewrite-guard
  • release-key-guard

What else is in this release

  • plugin marketplace manifests
  • plugin setup, status, and tuning skills
  • updated README.md, GUARDS.md, and SIGNATURES.md
  • cross-platform smoke coverage and plugin validation
  • local JSON audit flow, profile-driven CLI install, Homebrew and Scoop packaging assets

Verification

  • claude plugin validate .
  • bash tests/smoke.sh
  • GitHub Actions CI: green on main and v1.1.7

Secure Claude Code stays focused on practical local-first security for Claude Code, Claude cowork workflows, MCP tools, secrets, prompt injection fallout, exfiltration paths, and risky agent actions.