From security-guardrails
Use when designing or reviewing filesystem MCP access, path boundaries, allowed roots, method allowlists, and safe local file operations.
How this skill is triggered — by the user, by Claude, or both
Slash command
/security-guardrails:filesystem-mcp-guardrailsThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
This is a conceptual document for a Filesystem MCP server configuration. It is NOT a runnable configuration file. The earlier research used a Go-based filesystem MCP shape; this skill keeps only the safety model.
This is a conceptual document for a Filesystem MCP server configuration. It is NOT a runnable configuration file. The earlier research used a Go-based filesystem MCP shape; this skill keeps only the safety model.
When packaged as a true Agent Powerup, this will provide guidance on configuring and safely running local filesystem MCP servers.
Use when the agent needs structured, protocol-driven access to the local filesystem beyond its native capabilities, or when integrating external tools that require filesystem access via MCP.
Before this becomes a shipped MCP config:
apx mcp check metadata and dry-run install behavior.references/path-boundary-checklist.mdnpx claudepluginhub yeaight7/agent-powerups --plugin security-guardrailsBlocks Edit/Write/Bash actions until Claude investigates importers, data schemas, and user instructions. Improves output quality by forcing concrete facts before edits.