rijuld

Soothsay — AI skill for Claude Code

AI community

Read the omens before you curl sh: explains what an install script will do before it runs, and stops AI coding agents running unreviewed installers (Claude Code hook).

How to install Soothsay

This entry records only its repository, not the path inside it, so there is no exact command to give. Open rijuld/soothsay and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Soothsay does

Read the omens before you `curl | sh`: explains what an install script will do before it runs, and stops AI coding agents running unreviewed installers (Claude Code hook).

Alternatives in AI

  • Pro Workflow — 1,400+ Battle-tested Claude Code workflows from power users 1.4k ★
  • AI Surface — Find and govern AI attack surfaces in application code, at PR time and inside your AI coding tool (MCP server 131 ★
  • Claude Code Notification — A lightweight macOS desktop notification hook for Claude Code that displays native notifications with customiz 96 ★

README

🔮 soothsay

**Read the omens before you `curl | sh`.**

`soothsay` reads a shell install script and tells you, in plain English, what it's about to do to your machine *before* you run it. As a Claude Code hook, it also stops AI coding agents from piping installers into your shell until you've seen what they do.

[![crates.io](https://img.shields.io/crates/v/soothsay)](https://crates.io/crates/soothsay) [![docs.rs](https://img.shields.io/docsrs/soothsay)](https://docs.rs/soothsay) [![CI](https://github.com/rijuld/soothsay/actions/workflows/ci.yml/badge.svg)](https://github.com/rijuld/soothsay/actions/workflows/ci.yml) ![license: MIT](https://img.shields.io/badge/license-MIT-blue) ![dependencies: 0](https://img.shields.io/badge/dependencies-0-brightgreen) ![rust: 1.74+](https://img.shields.io/badge/rust-1.74%2B-orange)

curl -fsSL https://example.com/install.sh | soothsay

**Guard Claude Code** (needs the `soothsay` binary, see [Install](#install)):

/plugin marketplace add rijuld/soothsay
/plugin install soothsay@soothsay

Claude's `curl … | sh` is then blocked, reviewed, pinned to the exact bytes, and put to you for approval. [How it works](#guarding-an-ai-agent).


Why this exists

In 2026 almost every developer tool installs the same way:

curl -fsSL https://.dev/install.sh | bash

Coding agents, runtimes, package managers and language toolchains all do it. You're handing a stranger's 2,000-line shell script a root-capable terminal. You'll get a nice progress bar, but you won't be told that it:

  • appended three lines to your ~/.zshrc,
  • installed a launchd job that runs at every login,
  • used sudo 41 times,
  • downloaded a second script and piped that into sh too,
  • stripped macOS quarantine so Gatekeeper never looks at the binary.

Reading the script yourself is the right answer, and nobody does it. `soothsay` does it for you in about a millisecond and hands you the par