# claude-code baseline@1.2
A working floor: instructions plus a conservative permission rule. The rule denies the Read tool on ./.env and ./.env.*, and that is exactly what it bounds -- measured in the pinned 2.1.251 artifact, whose own prompt text says each rule…
[Catalog](/ru/ai/catalog)
[Publisher](/ru/ai/publishers/account_01KZET6ZKJN7S72T5H4WDV62T0)
- stable_id: setup_01M18ZQT20S87EVT07KP218X8V
- version: 1.2
- digest: sha256:b3ec1b6f68ec8e72a6b884a18be01f88aa50e009203ad273c1c06e70e6ff325d
- harness: claude-code
- Назначение: A working floor: instructions plus a conservative permission rule. The rule denies the Read tool on `./.env` and `./.env.*`, and that is exactly what it bounds -- measured in the pinned 2.1.251 artifact, whose own prompt text says each rule names a tool and warns the model against routing around one by switching tools. A shell command, a hook or an MCP server is a different route and this rule does not close it. The product's filesystem boundary is a separate mechanism, `sandbox.denyReadPaths`, which this posture does not set.
- Целевая роль:
- posture: baseline
- trust_lane: authoritative
- author_verified: Да
- component_verified: Да
- Жизненный цикл: active
- Автор: account_01KZET6ZKJN7S72T5H4WDV62T0
- Теги: code-review, devops, planning
- install: ai-stp registry version --kind setup --id setup_01M18ZQT20S87EVT07KP218X8V --version 1.2
```
ai-stp registry version --kind setup --id setup_01M18ZQT20S87EVT07KP218X8V --version 1.2
```