privacy-gateway
by kexi · ★ 0 · updated today
PII and secrets are swapped for placeholders (PII_PERSON_1) by regex and a local Gemma 4 before anything reaches Claude; placeholders are restored only where the work stays on this machine (local tool calls) and on screen.
Install
git clone https://github.com/kexi/claude-privacy-gatewayclaude --plugin-dir ./claude-privacy-gatewayThen run /reload-plugins or start a new session. Requires Claude Code 2.1.287+.
What it hooks into
From an automated scan with claude plugin validate, not a security review. Mods run with your permissions; read the code before installing.
- Events
session.startprompt.submitsession.appendprompt.attachmentprompt.contextprompt.sectiontool.describetool.checktool.callui.render- API calls
$.http.fetch$.ui.log$.ui.status
Origin
- How it got here
- Found through a post on X by @keisan, then checked on GitHub: the repo has a plugin manifest and function hooks. Listed .
- Repository
- github.com/kexi/claude-privacy-gateway
- Path in repo
- repository root
- Source commit
b28f1a3the exact code the scan read- Author
- @kexi
- License
- No license declared — ask the author before reusing code.
- First published
- Last pushed
- First listed here
- On X
- Mentioned in 1 post on X
Name and description come from the mod's own manifest. We link to the code; we don't host it, and it stays under its author's license.
Posts about this repo
Claude Code の Mods(function hooks)で、ローカルLLM(Gemma)でPII や秘密情報が Claude に届く前に伏せ字にして、戻ってきたら戻すやつ。コンテキストに機密情報が混入しにくくなるPoC https://github.com/kexi/claude-privacy-gateway