Claude Code Helper — Security skill for Claude Code
Security and cleanup toolkit for Claude Code.
How to install Claude Code Helper
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open light-merlin-dark/claude-code-helper and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Claude Code Helper does
Security and cleanup toolkit for Claude Code. Auto secret detection, 99.4% config reduction. CLI & MCP Server.
Alternatives in Security
- Trail Of Bits Claude-code-config — Opinionated production defaults from a top security firm: sandboxing, permissions, hooks, skills, MCP server c 1.6k ★
- Cve MCP Server — Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS sco 1.2k ★
- Cross-Pollinate Hex MCP Servers — Diff-driven audit: find real transferable changes across hex-line-mcp, hex-ssh-mcp, hex-graph-mcp 238 ★
README
██████╗ ██████╗██╗ ██╗
██╔════╝██╔════╝██║ ██║
██║ ██║ ███████║
██║ ██║ ██╔══██║
╚██████╗╚██████╗██║ ██║
╚═════╝ ╚═════╝╚═╝ ╚═╝
Configuration management and security toolkit for Claude Code
CLI & MCP Server • Always-on secret detection • Dry-run by default
Why CCH?
- CLI-First: Simple commands Claude can run directly - no MCP complexity required
- Safe by Default: Every cleanup previews changes before execution
- Intelligent Cleanup: 99.4% reduction capability (14MB → 84KB)
- Security Focused: Automatic secret detection on every command
- Global Analysis: Analyzes entire Claude workspace, not just individual projects
Install
# As global CLI (recommended)
npm install -g @light-merlin-dark/claude-code-helper
# Or as package
npm install @light-merlin-dark/claude-code-helper
Quick Start
**CLI:**
# Clean your config (dry-run by default)
cch clean # Preview what will be removed
cch clean --execute # Actually perform cleanup
# Remove empty projects
cch clean projects -e # Execute after preview
# Security audit
cch --audit # Analyze config health
cch --mask-secrets-now # Emergency secret removal
**With Claude:**
Tell Claude to run commands directly:
- "Run cch clean to preview cleanup"
- "Use cch --audit to analyze my config"
- "Run cch --mask-secrets-now to secure my config"
Cache Optimization
Claude Code accumulates session transcripts, debug logs, and file history in `~/.claude/`. Over time, this can grow to 1.5GB+. CCH provides intelligent cache management:
- Analyze cache usage - See exactly what's using space
- Safe cleanup - Remove orphaned projects, stale sessions, large files
- Blob removal - Extract large images/outputs from sessions (surgical, preserves conversations)
- Dry-run first - All commands preview changes before execution
Typical savings: 100-200MB from orphaned projects, 10-50MB from blob
Related Skills
Agent Security Skills
Claude Code security plugin and agentskills.io skill pack for securing LLM agents: threat modelling, config au
AI Code Review
AI-powered code review CLI with multiple providers (Gemini, Claude, OpenAI). Features 95%+ token reduction via
AWS MCP Server
by alexei-led - Features multiple Python environment setup options with detailed code style guidelines, compre
MCP Skills Vault
Offline security check for MCP server configs (.mcp.json, VS Code, Cursor, Claude Code) — GitHub Action, pre-c
Slack MCP
Multi-workspace Slack MCP server for Claude Code. xoxc/xoxp/xoxb auth, draft+confirm on writes, vault auto-exp
Homebrew Tap
Homebrew tap for macOS CLI tools — system cleanup, app updates, network diagnostics, port management, launch a
Related Agents
AIOps Manager
Owns AIOps — anomaly detection and correlation over observability telemetry, alert-noise reduction (grouping,
Cleanup Agent
Code cleanup specialist. Use for: dead code detection, debug artifact removal, unused import cleanup, EOF char
Debt Hunter
Use for technical debt detection, code quality analysis, and systematic codebase cleanup with CLI scanning cap