fitz2882/narthex

View on GitHub ↗

Prompt-injection defenses for Claude Code. A PreToolUse Bash hook blocks compositional credential-exfiltration shapes (secret read plus network, env dump to network, remote script to shell, reverse shells). A sanitizing MCP server wraps untrusted URLs and files in sentinels, strips invisible unicode, flags jailbreaks.

3 ★0 forksPythonUpdated 23d ago

Topics

ai-safetyai-securityanthropicclaudeclaude-codehooksindirect-prompt-injectionllm-securitymcpmcp-servermodel-context-protocolprompt-injectionsecurity
Stars
3★
Forks
0
Language
Python
License
MIT
Created
2026-04-17
Last push
2026-08-12