On /clear and exit, stops the session repo's nx processes and brings its Compose projects down.

Personal Claude Code mods: plugins of function hooks that restyle the transcript, add rows around the prompt and react to tool calls. Built and used on Claude Code 2.1.287+, Linux.
| Mod | What it does | Commands | Needs | ||
|---|---|---|---|---|---|
| quiet-bash | One-line tool rows (✓ <description>, red ✗ exit N on failure, +N −M on edits, duration for calls ≥10 s). Hides every tool's result block (Bash output, Edit diffs, WebFetch, MCP and Agent results; interactive tools, SendUserFile and image Reads keep theirs), finished read-only rows (Read/Grep/Glob, and calls the engine ran read-only like ls or git status, and every Claude in Chrome step but navigate), collapsed tool groups unless one failed, and timed-out GitLab pipeline-wait notices. Inline PNG thumbnails under rows that read, sent or wrote a PNG (at most 3 written ones per call), relative paths included; a group holding a thumbnail stays open, even under /quiet | /quiet brings it all back; /thumb [big] <path> shows a PNG (relative to the session's directory) as thumb #N: <path> | ImageMagick (magick) for thumbnails; a terminal with kitty graphics (see herdr) | ||
| quiet-spinner | Plain spinner words (thinking, writing, running, waiting, preparing) and Took 1m 4s instead of the whimsical ones | – | – | ||
| usage-percent | Row under the prompt: `ctx 34% \ | 5h 41% \ | wk 86%, yellow from 80 %, red from 95 %. In Nx repos also memory in the middle (claude.slice usage + app.slice pressure, yellow from 20 %, red from 50 %) and on the right the session's own nx serve projects (▶ admin api; a bare nx serve or run-many -t serve shows ▶ serve) and the branch's pipeline (ci ⏳ test, ⏸` when it waits on a manual job or an approval; none for Azure remotes) | – | gh / glab logged in for the pipeline; systemd claude.slice for memory |
| reminder-log | Tallies the reminders Claude Code injects for the model, per session; drops the token counter and repeated commit attribution blocks (sent again after a compaction) | /reminders prints the tally of the last 30 days | – | ||
| mr-banner | Colored card with a link under each MR/PR created, merged, approved or reviewed | – | GitLab MCP server named gitlab, or glab / gh | ||
| coderabbit-band | Band above the prompt with the open CodeRabbit threads (by severity) and nitpicks of the current branch's GitLab MR, with a link. Shows only when something is open | /coderabbit hides it until the counts change | glab logged in; GitLab remote | ||
| redact | Secrets in prompts and tool output reach the model as ‹secret:…› tokens; only Write/Edit turn them back into the real value. See redact | – | betterleaks on PATH | ||
| mem-guard | Bash commands that run Node tools go into a memory-capped claude-cmd.slice scope. Refused, with the fix in the message: nx affected/run-many without --parallel=1, a pnpm script that has a :lite twin, jest without a worker cap (--maxWorkers=N, -w N or --runInBand; a percentage doesn't count), pkill -f/pgrep -f with an unbracketed pattern, ci:local, heavy runs and dev-server starts while the slice is above 75 % or under pressure, a third heavy command or a third dev server at once, and writes by a check-runner subagent. See mem-guard | – | Linux with systemd: a user claude-cmd.slice, ps; see mem-guard | ||
| handover | Skill plus mod: the handover skill writes a one-sentence handover for a cold session to ~/.claude/handover.md; the mod files it per session under ~/.claude/handovers/<session id>.md, so parallel sessions in one repo never overwrite each other. A band above the prompt shows it; after /clear that session's sentence waits in the prompt (Tab takes it) and the next prompt spends it. A new terminal suggests nothing but lists the repo's open sentences (newest first, 14 days) | /handover-copy copies it and hides the band; /handover lists, /handover N puts one in the prompt | – | ||
| herdr-notify | GNOME popup when Claude waits for a permission, an answer or a new prompt (a Notification hook, not a plugin). Skipped while that pane is the focused one in herdr. Clicking it raises Ghostty and focuses that session's herdr pane. Hook: `"Notification": [{"matcher": "permission_prompt\ | idle_prompt\ | elicitation_dialog", "hooks": [{"type": "command", "command": "bash \"$HOME/.claude/skills/herdr-notify/notify.sh\""}]}]` | – | herdr, Ghostty, notify-send, jq |
| stack-down | On /clear and exit (also logout, a finished -p run, SIGINT/SIGTERM/SIGHUP), stops what the session left running in its repo: the nx processes it started (with their workers), and the repo's Docker Compose projects (compose down, volumes kept) unless another Claude session works in the same repo. Only for a session at a repo's top level (git rev-parse --show-toplevel); one started above the repos, such as ~/Dev, stops nothing | – | docker compose, git | ||
| review-walk | Skill plus mod: /review-walk takes the findings of the reviews already run in the conversation (/code-review, a repo's own review skill, CodeRabbit threads, MR comments), merges and ranks them, and asks fix / issue / skip one finding at a time; fixes wait until every finding is decided. The mod puts Finding N/M, a progress bar and the decisions so far over each question, and a band above the prompt between them. Decisions you authorised up front ("apply every Fix") are recorded through its ReviewWalkDecide tool instead of a question. The walk starts only after the skill runs, so a review on its own draws no band | /review-walk | A review run first: it walks findings, it never reviews. Any review skill or source works |
The model sees exactly what it would without them: the mods change what is drawn, except reminder-log, which drops two kinds of injected reminders, redact, which hides secrets, mem-guard, which runs Node commands inside a systemd scope and refuses some with a mem-guard: … error, and stack-down, which stops the session's own servers and, when no other session is in the repo, its Compose stacks when the session ends.
Three mods call out on their own:
get_merge_request on the gitlab MCP server for the link and title. gh/glab commands cost nothing extra.glab for GitLab origin remotes: a 60 s timer checks the branch, and a fetch (glab mr view plus all pages of the MR's discussions) runs every minute for 15 min after a git push, every 5 min while the band shows something, every 15 min otherwise, and once 5 s after a thread is resolved.ps and pwdx for nx serve processes, and docker inspect once per container a server runs in, to read its compose project directory. The pipeline (gh run list / glab ci get) is fetched when HEAD moves, 15 s after a git push, every minute while it runs and every 5 min otherwise.From the marketplace (gets updates; herdr-notify and herdr-link-toast are not in it):
claude plugin marketplace add schreibse/claude-code-mods
claude plugin install quiet-bash@schreibse-mods # per mod
Then turn on updates: /plugin → Marketplaces → schreibse-mods → Enable auto-update. See Updates.
From a clone, to adapt a mod or work on it. Claude Code loads every plugin folder under ~/.claude/skills/ at session start. Don't install the same mod from the marketplace too: the installed copy silently replaces the folder.
~/.claude/skills: clone straight into it: ``sh git clone https://github.com/schreibse/claude-code-mods ~/.claude/skills ``sh git clone https://github.com/schreibse/claude-code-mods ~/src/claude-code-mods ln -s ~/src/claude-code-mods/quiet-bash ~/.claude/skills/quiet-bash # per mod ``New sessions pick them up; a running one needs /exit and claude --continue.
Leave a mod out: claude plugin uninstall <mod>@schreibse-mods, or delete or unlink its folder. Try one for a single session: claude --plugin-dir ~/src/claude-code-mods/<mod>.
Where they run. Built and used only in the terminal CLI on Fedora (Linux, systemd, cgroup v2). The engine also loads user-scope mods in the local session the desktop app starts for its Code tab, and draws them there (desktop surface); untested here. See Setting up for what each mod needs.
This repo is the skills folder itself, so .gitignore ignores everything and re-includes each mod: a new mod needs a !/<name>/ line or git won't see it. .claude-plugin/types/ is generated by the engine and stays untracked.
Each mod has its own version (plugin.json) and a CHANGELOG.md in its folder; each release is a git tag <mod>--v<version>.
Plugin updated: <mod> · Run /reload-plugins to apply. Without it nothing tells you; check by hand: ``sh claude plugin marketplace update schreibse-mods claude plugin update quiet-bash@schreibse-mods # per mod; "already at the latest version" if none ``CHANGELOG.md. Read every version you skipped: a major version means you have to act (a new hook in settings.json, a new dependency, a removed command).git -C ~/.claude/skills pull --ff-only, then read the changelogs of the mods whose version moved (git -C ~/.claude/skills diff ORIG_HEAD -- '*/.claude-plugin/plugin.json').betterleaks scans every prompt and tool result before it reaches the model. Each value it flags becomes ‹secret:xxxxxxxx› and stays hidden wherever it appears later, even where the scanner would not recognise it again.
| The model's call | What happens |
|---|---|
| Write, Edit, NotebookEdit with a token | the real value is written to the file |
| Write that would drop a secret the file holds | refused: use Edit |
| Agent, SendMessage, TodoWrite with a token | passed on as the token |
| Any other tool with a token (Bash, WebFetch, MCP …) | refused, so the value never leaves |
| A token the mod no longer knows (after a restart) | refused, never restored wrongly |
Cut-short output. Before Bash or any tool with a file_path/path (Read, Grep, Edit …) runs, every file the call names (Bash: the first 10 words that could be paths, files up to 1 MB) is scanned whole, so cut -c1-60 .env, cut -d= -f2 or a Read of a few lines from a PEM key still come back as tokens. Multi-line secrets are hidden line by line. Bash words resolve against the directory each segment runs in (cd sub && cut -c1-40 .env), and ~/, $HOME/ and ${HOME}/ expand to the home directory.
Rules. betterleaks' defaults plus redact/betterleaks.toml: Sentry DSN keys, and client secrets too short for the generic rules. A client secret containing dev, local, test, example, changeme or placeholder stays visible, so local dev clients keep working in commands.
Not covered:
git show HEAD:.env | cut …, printenv | cut …); the transcript file's structured tool records, which keep real values (the model does not read them).cut -c1-40 *.env), quoted paths with spaces and a cd inside a subshell ((cd sub && cut -c1-40 .env)).client-secret rule needs some entropy (≥ 3.0), so short, repetitive client secrets stay visible.base64, rev, xxd) or sent (curl -T file). redact keeps secrets out of the model's context by accident; it is not a sandbox against a model trying to get them.‹secret:…› token is refused like any other tool call carrying one.The vault lives in session memory: /exit forgets it.
The status line shows redacted N once a value is hidden: N counts vault entries, so a PEM key counts once per line. A toast per call names the rules that hid new values. Without betterleaks the status line says off (no betterleaks) and nothing is hidden. A betterleaks run that fails leaves that call unredacted (values already in the vault stay hidden): one toast per failure streak, the status says off (betterleaks), and the next call scans again.
Every Bash command that names a Node tool (node, npx, pnpm, npm, npm exec, yarn, nx, jest, vitest, playwright, tsc, ngc) runs as systemd-run --user --scope --slice=claude-cmd.slice -p MemoryMax=30% -p MemorySwapMax=4% -- bash -c '…', so an overrun dies with exit 137 instead of taking the desktop down. Leading cd … && stay outside the wrapper, so the shell's directory still moves.
The rules read what each part of a command runs (after &&, |, ;, &, $( ), inside bash -c '…', following cd), never words it only mentions, so a commit message saying pkill -f passes. Not looked into: xargs, make, eval, scripts.
At once, counted per scope in claude-cmd.slice from one ps scan (skipped when ps fails):
tsc, ngc, an nx task); the nx daemon and dev servers don't count;nx serve, nx run x:serve, a serve* script): the API and one app.A command counts as heavy for these checks when it runs one of those tools, docker compose up, or a test, build, lint, typecheck, e2e or serve* script.
check-runner subagents (an agent type of the owner's) only run checks: git commands that change the tree or history, sed -i, --write/--fix, starting or stopping servers or processes, and writes outside /tmp are refused with "Report the failure instead of fixing it".
Assumes this setup; the messages name it:
claude-cmd.slice user unit. Without it systemd makes the slice with no limit of its own: each command is still capped at 30 % of RAM, but the headroom check has nothing to measure and stays off: ``ini # ~/.config/systemd/user/claude-cmd.slice [Slice] MemoryMax=30% MemorySwapMax=4% ` A full slice can livelock without ever reaching the OOM killer, so let systemd-oomd kill a scope in it under sustained pressure: systemctl --user set-property claude-cmd.slice ManagedOOMMemoryPressure=kill ManagedOOMMemoryPressureLimit=50%. systemd turns a percentage into bytes of the machine's RAM (on 27 GiB: 8.2G and 1.1G), so the same unit fits any machine. Check what a machine gets: systemd-run --user --scope -q -p MemoryMax=30% -- sh -c 'cat /sys/fs/cgroup$(cut -d: -f3 /proc/self/cgroup)/memory.max'`fuser -k 4700/tcp.:lite twin (lint:affected:lite, typecheck:lite, test:affected:lite) and a slow ci:local script.git@work:org/repo) reads as ci no login (work) though you are logged in.Under herdr (here inside Ghostty), quiet-bash's thumbnails draw only their alt text, and links in mr-banner, coderabbit-band and Claude's own output aren't clickable.
Cause: Claude Code turns on kitty graphics only for terminals whose XTVERSION answer is kitty (≥ 0.28) or starts with ghostty, and hyperlinks only for terminals it recognises. herdr forwards both, but answers with its own name, so Claude Code turns both off.
Fix: force both on, inside herdr only, before Claude Code starts (it reads them at startup):
# ~/.bashrc.d/herdr-terminal.sh
if [ -n "$HERDR_ENV" ]; then
export CLAUDE_CODE_FORCE_TERMINAL_IMAGES=1
export FORCE_HYPERLINK=1
fi
Also turn on herdr's kitty graphics passthrough (off by default) in ~/.config/herdr/config.toml:
[experimental]
kitty_graphics = true
Then herdr server reload-config, open a new herdr pane (old panes keep the old environment) and start Claude Code there. Check it: /thumb /path/to/some.png should draw the picture.
herdr opens a ctrl+clicked link in the background with no feedback, and ignores file:// links altogether. herdr-link-toast opens http(s) links with xdg-open and shows a toast. It also opens the path in quiet-bash's thumbnail captions, which link to http://localhost/open-file/<path> because file:// isn't clickable in herdr. Such a link opens only when the path ends in .png; any other gets a "Could not open link" toast. Needs python3 ≥ 3.9. Install:
herdr plugin link ~/.claude/skills/herdr-link-toast
Without herdr, in plain kitty or Ghostty, none of this is needed. Terminals without the kitty graphics protocol show the thumbnail's alt text (its path).
Read before installing for someone. The mods were written for one machine; several carry its names and need Linux.
1. Check the host. Mods need Claude Code 2.1.287+. They load in the terminal CLI and, from ~/.claude/skills, in a desktop app's local Code-tab session. A desktop-app session can also be given a folder through CLAUDE_CODE_PLUGIN_DIRS in the env block of ~/.claude/settings.json. Nothing here has been tried in the desktop app, VS Code, JetBrains, macOS, WSL or native Windows: say so to the person instead of promising it works.
2. Pick mods by platform.
| Works anywhere | Needs Linux | Never on macOS or Windows |
|---|---|---|
quiet-spinner, reminder-log, mr-banner, coderabbit-band, redact (with betterleaks), handover, review-walk; usage-percent's ctx/5h/wk and pipeline parts | usage-percent's memory and dev-server parts (cgroup v2, /proc, pwdx; they stay empty elsewhere); stack-down (ps, /proc/<pid>/cwd, setsid) | mem-guard: it wraps every Node command in systemd-run, so without systemd every node/pnpm/nx call fails. Leave it out. herdr-notify, herdr-link-toast: Linux, herdr, Ghostty, GNOME |
/, ~). There, quiet-bash thumbnails and redact's Bash pre-scan find nothing, and handover leaves spent files behind./handover-copy can't copy from the desktop app.3. Adapt to the OS you are on. The mods do not detect the OS; you are running on it, so adapt the person's copy and test it there. The plugin API has no OS call: on Windows $.env.get('OS') is Windows_NT, elsewhere uname -s says Darwin or Linux. Known gaps:
:lite, pkill -f, ci:local), skip scoped() and the ps/cgroup checks when systemd-run is missing.HOME may be unset (USERPROFILE), and spent sentences are removed with rm./ and ~ only, not C:\….pwdx (lsof -a -d cwd -p <pid> instead); the memory zone needs cgroup v2 and stays empty.Write each OS change as its own commit with a test, so it can come back upstream.
4. Replace the owner's names. Names in this README and in the messages are examples from the owner's repos; use the person's own. The API project there is ec-api, not api, and the dev-server rules only work with the real project names: read them from the repo (npx nx show projects).
| Mod | Owner-specific | Where |
|---|---|---|
| mem-guard | claude-cmd.slice and its 30 % / 4 % limits; port 4700; :lite scripts; ci:local "~45 min"; the check-runner agent type; 2 heavy commands, 2 dev servers | hooks/rules.ts, hooks/register.ts |
| usage-percent | claude.slice (usage) and app.slice (pressure) under the user manager; Nx repos only (nx.json) | hooks/register.tsx |
| stack-down | another session is a process whose command is claude (native install); an npm install runs as node …/cli.js, goes unseen, and its repo's Compose stacks go down anyway | hooks/targets.ts |
| mr-banner, coderabbit-band, quiet-bash | the GitLab MCP server named gitlab (mcp__gitlab__…) | hooks/*.ts(x) |
| coderabbit-band, usage-percent | any remote that isn't GitHub (or Azure) is taken for GitLab | hooks/register.tsx |
| herdr-notify | Ghostty's desktop entry com.mitchellh.ghostty | notify.sh |
5. Install and check. Install as above (from a clone when you adapted a mod: an update replaces a marketplace copy), then run claude plugin validate <mod> and claude plugin test <mod> for each mod you install. Start a new session and check what the person should now see: the usage row, a tool row with ✓, and for redact, nothing until it hides a value, then redacted N in the status line.
Each mod is .claude-plugin/plugin.json, hooks/hooks.json and hooks/register.ts(x), plus types/index.d.ts when it keeps session state. Per mod:
claude plugin validate <mod> # what it hooks and calls, and what the engine would refuse
claude plugin test <mod> # its *.test.ts(x)
tsc -p <mod> # once the engine has laid .claude-plugin/types/
Edits in ~/.claude/skills hot-reload into running sessions that loaded the mod.
Marketplace users only get a change once the mod's version moves, so a change meant for them bumps it in the same commit:
version in <mod>/.claude-plugin/plugin.json: major when users must act, minor for a feature, patch for a fix.## <version> — <date> to <mod>/CHANGELOG.md, with an Action needed line on a major.claude plugin validate --strict . (the marketplace) and claude plugin validate --strict <mod>.claude plugin tag --push <mod>.gh release create <mod>--v<version> --verify-tag --title "<mod> <version>" --notes-file <entry>, with the new changelog entry as the notes; links in it must be absolute.hooks/register.ts 48 lines1import type { Register } from 'claude-code'
2import { composeIn, isClaude, isRepoRoot, nxOf, othersIn, parsePs, sessionOf } from './targets'
3
4const ENDS = new Set(['clear', 'prompt_input_exit', 'logout', 'other'])
5
6/** What the session left running ends with it: the nx processes it started, and its repo's Compose stacks once no other session works there. */
7export const register: Register = on => {
8 on('session.end', async ($, e, next) => {
9 if (!ENDS.has(e.reason)) {
10 return next(e)
11 }
12 const root = await $.session.root()
13
14 try {
15 if (!isRepoRoot(await $.process.run(['git', '-C', root, 'rev-parse', '--show-toplevel']), root)) {
16 $.ui.log(`stack-down: ${root} is no repo's top level, nothing stopped`, { to: 'debug' })
17 return next(e)
18 }
19
20 const procs = parsePs((await $.process.run(['ps', '-eo', 'pid=,ppid=,args='])).stdout)
21 const session = sessionOf(procs, Number((await $.process.run(['sh', '-c', 'echo $PPID'])).stdout.trim()))
22 const pids = nxOf(procs, session)
23 if (pids.length > 0) {
24 await $.process.run(['kill', '-TERM', ...pids.map(String)])
25 }
26
27 const claudes = []
28 for (const proc of procs.filter(isClaude)) {
29 const cwd = await $.process.run(['readlink', `/proc/${proc.pid}/cwd`])
30 if (cwd.exitCode === 0) {
31 claudes.push({ pid: proc.pid, cwd: cwd.stdout.trim() })
32 }
33 }
34 const ls = othersIn(claudes, session, root) ? undefined : await $.process.run(['docker', 'compose', 'ls', '-a', '--format', 'json'])
35 const stacks = ls?.exitCode === 0 ? composeIn(JSON.parse(ls.stdout || '[]'), root) : []
36 for (const name of stacks) {
37 // Detached, so the exit's short bound cannot cut Compose off halfway.
38 await $.process.run(['setsid', '-f', 'sh', '-c', `docker compose -p '${name}' down >/dev/null 2>&1`])
39 }
40 const down = ls ? stacks.join(', ') || 'none' : 'none, another session works here'
41 $.ui.log(`stack-down: ${root}: ${pids.length} nx process(es) stopped, down: ${down}`, { to: 'debug' })
42 } catch (error) {
43 $.ui.log(`stack-down: ${String(error)}`, { to: 'debug' })
44 }
45 return next(e)
46 })
47}
48hooks/targets.ts 78 lines1export type Proc = { pid: number; ppid: number; args: string }
2
3const NX = /(^|[\s/])nx(\.js)?(\s|$)/
4const CLAUDE = /^\S*\bclaude(\s|$)/
5
6/** `ps -eo pid=,ppid=,args=` as rows. */
7export const parsePs = (out: string): Proc[] =>
8 out
9 .split('\n')
10 .map(line => line.trim().match(/^(\d+)\s+(\d+)\s+(.*)$/))
11 .filter((m): m is RegExpMatchArray => m !== null)
12 .map(([, pid, ppid, args]) => ({ pid: Number(pid), ppid: Number(ppid), args: args ?? '' }))
13
14export const isNx = (proc: Proc): boolean => NX.test(proc.args)
15
16export const isClaude = (proc: Proc): boolean => CLAUDE.test(proc.args) && !proc.args.includes('--chrome-native-host')
17
18/** The session's own Claude process: the nearest Claude among `pid` and its ancestors, else `pid` itself. */
19export const sessionOf = (procs: Proc[], pid: number): number => {
20 const byPid = new Map(procs.map(proc => [proc.pid, proc]))
21 for (let proc = byPid.get(pid); proc; proc = byPid.get(proc.ppid)) {
22 if (isClaude(proc)) {
23 return proc.pid
24 }
25 if (proc.ppid === proc.pid) {
26 break
27 }
28 }
29 return pid
30}
31
32/** The nx processes the session started, with everything they started in turn. */
33export const nxOf = (procs: Proc[], session: number): number[] => {
34 const mine = new Set(withDescendants(procs, [session]))
35 return withDescendants(procs, procs.filter(proc => mine.has(proc.pid) && isNx(proc)).map(proc => proc.pid))
36}
37
38/** Whether a Claude process other than this session works inside the repo, so its Compose stacks stay up. */
39export const othersIn = (claudes: { pid: number; cwd: string }[], session: number, root: string): boolean =>
40 claudes.some(claude => claude.pid !== session && inside(claude.cwd, root))
41
42/** The given processes and everything they started, so a server's workers go with it. */
43export const withDescendants = (procs: Proc[], roots: number[]): number[] => {
44 const children = new Map<number, number[]>()
45 for (const { pid, ppid } of procs) {
46 children.set(ppid, [...(children.get(ppid) ?? []), pid])
47 }
48 const found = new Set<number>()
49 const queue = [...roots]
50 while (queue.length > 0) {
51 const pid = queue.pop() as number
52 if (found.has(pid)) {
53 continue
54 }
55 found.add(pid)
56 queue.push(...(children.get(pid) ?? []))
57 }
58 return [...found]
59}
60
61export const inside = (dir: string, root: string): boolean =>
62 dir === root || dir.startsWith(`${root}/`)
63
64export type ComposeProject = { Name: string; ConfigFiles: string }
65
66/** The Compose projects whose files live in the repo; `ConfigFiles` lists them comma-separated. */
67export const composeIn = (projects: ComposeProject[], root: string): string[] =>
68 projects
69 .filter(project => project.ConfigFiles.split(',').some(file => inside(file.trim(), root)))
70 .map(project => project.Name)
71
72/**
73 * Only a session at a repo's top level owns what is inside it: one in `~/Dev` would otherwise take
74 * down every project below. `toplevel` is `git rev-parse --show-toplevel` run in the root.
75 */
76export const isRepoRoot = (toplevel: { exitCode: number; stdout: string }, root: string): boolean =>
77 toplevel.exitCode === 0 && toplevel.stdout.trim() === root
78