ldalcolmo

Claude Vault — Documentation skill for Claude Code

Documentation community

Encrypt Claude Code markdown files at rest.

How to install Claude Vault

This entry records only its repository, not the path inside it, so there is no exact command to give. Open ldalcolmo/claude-vault and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Claude Vault does

Encrypt Claude Code markdown files at rest. AES-256-GCM for CLAUDE.md, skills, memory, and Obsidian vaults.

Alternatives in Documentation

  • 会话管理(Session Manager)需求文档(PRD / Markdown) — 目标:对 Codex / Claude Code 的本地会话记录进行可视化管理,并提供“一键复制 / 一键终端恢复”能力 31.7k ★
  • Repo Recap — Generate a structured recap of the repository state: open PRs, open issues, recent releases, and executive sum 11.9k ★
  • Ars Format Convert — ARS academic-paper format-convert mode — convert to LaTeX / DOCX / PDF / Markdown 4.5k ★

README

claude-vault

[![License: MIT](https://img.shields.io/badge/License-MIT-blue.svg)](https://opensource.org/licenses/MIT) [![Node.js](https://img.shields.io/badge/Node.js-18%2B-green.svg)](https://nodejs.org) [![AES-256-GCM](https://img.shields.io/badge/Encryption-AES--256--GCM-orange.svg)]()

Encrypt your Claude Code `.md` files at rest. CLAUDE.md, SKILL.md, memory — anything you want private on disk and in git.

The problem

Claude Code stores project instructions, skills, and memory as plain markdown files. If your repo is public (or if someone has access to your machine), they can read your custom prompts, workflows, and business logic. That's not great.

Same goes for AI memory systems like [obsidian-memory](https://github.com/topics/obsidian-memory) — they store session context, API keys, decisions, and project notes as `.md` files in an Obsidian vault. All readable by anyone who opens the folder.

What this does

Locks those files with AES-256-GCM. They stay encrypted on disk and in version control. When you start a Claude Code session, they get decrypted. When the session ends, they lock again.

CLAUDE.md (readable) --[encrypt]--> binary blob (CLVAULT1 header)
                                        |
                    session starts, hook runs decrypt
                                        |
binary blob --------[decrypt]--> CLAUDE.md (readable, temporarily)
                                        |
                    session ends, hook runs encrypt
                                        |
CLAUDE.md (readable) --[encrypt]--> binary blob

Install

npm install -g claude-vault

Quick start

One command does everything — creates config, installs Claude Code hooks, encrypts your files:

export CLAUDE_VAULT_KEY="something-strong-here"
cd your-project
claude-vault setup

That's it. From now on, files decrypt when Claude Code reads them and encrypt when the session ends.

Commands

| Command | What it does | |-----