bareguard: A Lightweight Safety Gate for AI Agents — Now on npm

The bare suite is now complete with the release of bareguard v1.0 on npm. According to the author, the problem bareguard solves is not about what agents say — it's about what they do: rm -rf on the wrong path, 10,000 jobs queued overnight, fork bombs, reading ~/.ssh, or $400 in tokens burned before anyone notices. Most teams patch this with scattered if-statements and prayer; bareguard provides a single, centralized gate.
Why opinionated
- One gate. Tools never self-check — all safety flows through bareguard.
- Halt ≠ deny. Budget exhaustion asks a human. It never bubbles to the LLM, preventing infinite retry loops.
- Safe defaults ship.
DROP TABLE,rm -rf /— denied out of the box. - One callback for every human escalation. Options: Slack, TUI, PIN — your choice.
Why lightweight
- ~1000 lines of code. One dependency. Twelve small files.
- No daemon. No SaaS. No telemetry. No DSL.
- Audit log is a single JSONL file — grep it like a human.
Also shipping: bareagent v0.9
The loop runner now has:
spawn— delegate to child agents with rate + depth capped and shared budget.defer— queue work now, fire later via cron; revalidated at fire time.examples/wake.sh+examples/orchestrator/— reference wiring.- MCP calls flow through the same gate as native tools.
The one-line test
If your agent did the worst thing it could in the next 5 minutes — is there a single place that says no, and a single place that writes it down? If not, the author argues you need this layer. Install with npm install bareguard. Licensed under Apache 2.0.
This release is part of a series from the same developer: bareagent (agent brain), barebrowse (real browser), baremobile (Android + iOS), and bareguard (the leash).
📖 Read the full source: r/ClaudeAI
👀 See Also

Claude Code user builds nvm plugin to capture problem-solving context
A developer created a Claude plugin called nvm (non-volatile memory) that converts Claude session history into markdown cards documenting problem-solving decisions and reusable insights. The tool addresses the issue of losing track of how problems were solved when using AI coding assistants.

Claude wrote 3,000 lines of code instead of importing pywikibot — a case study in AI agents ignoring existing libraries
A developer tasked Claude Code (Opus 4.7) with fixing typos on Fandom wikis. The model wrote ~3,000 lines of Python reimplementing pywikibot, mwparserfromhell, and RETF rules rather than importing them. The post explores why this happens and how a two-minute search reduced the codebase to 1,259 lines.

Google's HEIR Compiler: Practical Private AI with Homomorphic Encryption
Google open-sources HEIR, a compiler that lets developers run AI inference on encrypted data without decryption. Demos include fraud detection, recommendations, and more.

Claude-IDE-Bridge Now Works on Remote Servers for AI-Assisted Development
The Claude-IDE-Bridge tool now connects Claude AI to remote development environments on VPS or cloud machines, allowing access to live diagnostics, open files, and test failures from any device.