Audit Policies — Security skill for Claude Code
Analyze a project's Claude Code permission settings and suggest toolgate policies.
How to install Audit Policies
Installs to ~/.claude/skills/brycehans-toolgate-audit-policies/SKILL.md
mkdir -p ~/.claude/skills/brycehans-toolgate-audit-policies && curl -fsSL https://raw.githubusercontent.com/brycehans/toolgate/HEAD/.claude/skills/audit-policies.md -o ~/.claude/skills/brycehans-toolgate-audit-policies/SKILL.md Restart Claude Code, or start a new session, for it to be picked up.
What Audit Policies does
name: audit-policies description: Analyze a project's Claude Code permission settings and suggest toolgate policies. Use when the user asks to audit, review, or optimize their Claude Code permissions.
Audit Policies Skill
You are helping the user audit their Claude Code permission settings and suggest toolgate policies to replace static permission rules.
Step 1: Run the Audit
Run `toolgate audit` from the user's project directory:
toolgate audit
This scans all Clau
Alternatives in Security
- Claude Code Security Review — An AI-powered security review GitHub Action using Claude to analyze code changes for security vulnerabilities 3.9k ★
- Portaljs Check Data Quality — Audit a local or remote tabular file (CSV/TSV) for common data quality issues 2.3k ★
- Audit Agent Sessions — Analyze all agent sessions from the last 3 days across Claude, Codex, and Gemini 238 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Permissions Audit
Review settings.json permissions — flag overly broad rules, identify likely-unused ones, suggest pruning.
Mine Permissions Audit
Analyze frequent permission prompts and recommend allow-list entries to reduce friction.
Rogue SEO Audit Skill
Audit technical, on-page, and AI-search SEO for pages, sites, and content. Use when the user asks for /seo-aud
Configuration Review
Analyze configuration management and environment settings to identify security risks and improvement opportuni
Reflexion
Audit and optimize the .claude/ ecosystem — skills, hooks, guides, patterns, agents, and settings — for qualit
Optimize Harness
Audit one or all supported agent harnesses for config efficiency, hook overhead, permission friction, plugin a
Related Agents
Test Audit Specialist
Use this agent when: User asks to audit, analyze, or optimize the test suite; Test execution time exceeds acce
Clawlint Reviewer
Use this agent to audit a repo's Claude Code setup (CLAUDE.md, AGENTS.md, skills, hooks, settings) with clawli
Permissions Manager
Manage tool permission rules. Use when user says 'allow', 'deny', or 'ask' for a command, wants to modify perm