modscode EN

modscode / 図鑑 / vault

vault

Credential vault for Claude Code: macOS Keychain secrets, per-directory grants, injected env, redacted output, pane with import/export

確かめやすいコードターミナル+デスクトップペインステータスラインBoxButtonText

何をするか

  • 欄・ステータス行を描く
  • /vault・/vault:vault を足す
  • mcp__vault__vault_list・mcp__vault__vault_exec・Bash の呼び出しを見張る(止めることがある)
  • session.append・session.startにフックする
  • ターンをまたいで自分の状態を持つ

良いところ

  • ネットワークに出ない
  • TypeScript で書かれている
  • エラーを扱う

作り始めるためのコード

2 種類あります。上のデザインから modscode が書いた雛形と、その Mod 自身のコードのうち描いている部分です。

雛形(register.tsx)

register.tsx
import type { Register } from 'claude-code'

// Drawn like vault by yocloud-code (pane, status), as modscode read it from the mod's code:
// https://modscode.com/gallery/yocloud-code-vault/
// Written by modscode from that reading, not copied from the mod: use it as you like.
// Each value below stands for one the mod works out at run time; put in your own.
export const register: Register = on => {
  // the pane: open it with $.ui.open({ id: 'my-pane', title: "🔐 Vault" })
  on('ui.render', { component: 'Pane', requestId: 'my-pane' }, async ($, e) => {
    const { Box, Text, Button } = $.ui.resolve(e)
    const crumbs = '…'
    const tilde = '…'
    const dirCount = '…'
    const notice = '…'
    const n = '…'
    const type = '…'
    const label = '…'
    const description = '…'
    const ms = '…'
    const ago = '…'
    const count = '…'
    const MODE_LABEL = '…'
    const type2 = '…'
    const description2 = '…'
    const type3 = '…'
    const description3 = '…'
    return (
      <Box flexDirection="column">
        <Box flexDirection="column" borderStyle="round" borderColor="cyan" paddingX={1}>
          <Box justifyContent="space-between" flexWrap="wrap">
            <Box gap={1}>
              <Text bold color="cyan">
                🔐 Vault
              </Text>
              <Text dimColor>
                ›
              </Text>
              <Text bold>
                {crumbs}
              </Text>
            </Box>
            <Text dimColor wrap="truncate-start">
              {tilde}
            </Text>
          </Box>
          <Box gap={2} flexWrap="wrap">
            <Text bold>
              {"● "}
            </Text>
            <Text dimColor>
              {`授权对目录及子目录长期有效 · 共 ${dirCount} 个目录有授权`}
            </Text>
          </Box>
        </Box>
        <Box paddingX={1} marginTop={1}>
          <Text>
            {notice}
          </Text>
        </Box>
        <Box flexDirection="column" borderStyle="round" borderColor="cyan" paddingX={1} marginTop={1}>
          <Box gap={2} flexDirection="column" justifyContent="space-between">
            <Box flexDirection="column" flexGrow={1}>
              <Box gap={1} alignItems="center">
                <Text>
                  🧩
                </Text>
                <Button plain label={`${n}`} />
                <Text dimColor>
                  {type}
                  {` · ${label}`}
                </Text>
              </Box>
              <Text dimColor wrap="truncate-end">
                —
              </Text>
              <Text wrap="truncate-end">
                {description}
              </Text>
              <Text color="green" wrap="truncate-end">
                {`✔ 连接正常 · ${ms}ms · ${ago}`}
              </Text>
              <Text dimColor>
                {`最近使用 ${ago} · 共 ${count} 次`}
              </Text>
            </Box>
            <Box flexDirection="column" alignItems="flex-start" flexShrink={0}>
              <Box gap={2}>
                <Text bold>
                  {"● "}
                </Text>
                <Text bold>
                  {"● "}
                </Text>
              </Box>
              <Box gap={1}>
                <Button label="测试中…" />
                <Button label="编辑" />
                <Button label="先设置密文" variant="primary" />
              </Box>
            </Box>
          </Box>
          <Box gap={1} alignItems="center" flexWrap="wrap" marginTop={1}>
            <Box width={10} flexShrink={0}>
              <Text dimColor>
                当前目录
              </Text>
            </Box>
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Text dimColor wrap="truncate-start">
              {`继承自 ${tilde}`}
            </Text>
            <Text color="yellow">
              只读不会拦截 SSH 上执行的命令,建议在服务器上用受限账号
            </Text>
          </Box>
        </Box>
        <Box flexDirection="column" borderStyle="round" borderColor="cyan" paddingX={1} marginTop={1}>
          <Box gap={2} flexDirection="column" justifyContent="space-between">
            <Box flexDirection="column" flexGrow={1}>
              <Box gap={1} alignItems="center">
                <Text>
                  🧩
                </Text>
                <Button plain label={`${n}`} />
                <Text dimColor>
                  {type2}
                  {` · ${label}`}
                </Text>
              </Box>
              <Text dimColor wrap="truncate-end">
                —
              </Text>
              <Text wrap="truncate-end">
                {description2}
              </Text>
              <Text color="green" wrap="truncate-end">
                {`✔ 连接正常 · ${ms}ms · ${ago}`}
              </Text>
              <Text dimColor>
                {`最近使用 ${ago} · 共 ${count} 次`}
              </Text>
            </Box>
            <Box flexDirection="column" alignItems="flex-start" flexShrink={0}>
              <Box gap={2}>
                <Text bold>
                  {"● "}
                </Text>
                <Text bold>
                  {"● "}
                </Text>
              </Box>
              <Box gap={1}>
                <Button label="测试中…" />
                <Button label="编辑" />
                <Button label="先设置密文" variant="primary" />
              </Box>
            </Box>
          </Box>
          <Box gap={1} alignItems="center" flexWrap="wrap" marginTop={1}>
            <Box width={10} flexShrink={0}>
              <Text dimColor>
                当前目录
              </Text>
            </Box>
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Text dimColor wrap="truncate-start">
              {`继承自 ${tilde}`}
            </Text>
            <Text color="yellow">
              只读不会拦截 SSH 上执行的命令,建议在服务器上用受限账号
            </Text>
          </Box>
        </Box>
        <Box flexDirection="column" borderStyle="round" borderColor="cyan" paddingX={1} marginTop={1}>
          <Box gap={2} flexDirection="column" justifyContent="space-between">
            <Box flexDirection="column" flexGrow={1}>
              <Box gap={1} alignItems="center">
                <Text>
                  🧩
                </Text>
                <Button plain label={`${n}`} />
                <Text dimColor>
                  {type3}
                  {` · ${label}`}
                </Text>
              </Box>
              <Text dimColor wrap="truncate-end">
                —
              </Text>
              <Text wrap="truncate-end">
                {description3}
              </Text>
              <Text color="green" wrap="truncate-end">
                {`✔ 连接正常 · ${ms}ms · ${ago}`}
              </Text>
              <Text dimColor>
                {`最近使用 ${ago} · 共 ${count} 次`}
              </Text>
            </Box>
            <Box flexDirection="column" alignItems="flex-start" flexShrink={0}>
              <Box gap={2}>
                <Text bold>
                  {"● "}
                </Text>
                <Text bold>
                  {"● "}
                </Text>
              </Box>
              <Box gap={1}>
                <Button label="测试中…" />
                <Button label="编辑" />
                <Button label="先设置密文" variant="primary" />
              </Box>
            </Box>
          </Box>
          <Box gap={1} alignItems="center" flexWrap="wrap" marginTop={1}>
            <Box width={10} flexShrink={0}>
              <Text dimColor>
                当前目录
              </Text>
            </Box>
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Button label={`${MODE_LABEL}`} variant="primary" />
            <Text dimColor wrap="truncate-start">
              {`继承自 ${tilde}`}
            </Text>
            <Text color="yellow">
              只读不会拦截 SSH 上执行的命令,建议在服务器上用受限账号
            </Text>
          </Box>
        </Box>
        <Box gap={1} flexWrap="wrap" marginTop={1} />
      </Box>
    )
  })

  on('session.start', async ($, e, next) => {
    const names = '…'
    await $.ui.status(`🔐 vault: ${names}`)
    return next(e)
  })
}

Mod 自身のコード

読んだコミットにライセンスの全文が見つからなかったため、ソースの場所へのリンクだけにしています。

コードが呼ぶもの

プログラム起動ファイル書き込み環境変数ツール呼び出し保存

コードから読み取ったデザイン

読み取ったコミットのソースから描いたもので、動かした結果ではありません。一覧は 3 回描き、条件はデスクトップアプリで描く最初の分岐を取り、動かしたときにだけ決まる値は仮の例(点線の下線)にするか省きます。色と書体はこのサイトのものです。

コードから読めること

2026-10-06 に読んだコミット b19b9473db21 のソースから。最初のまとまりが載せる条件で、残りは自分で判断するための材料です。後のコミットは、次に読むまで見ていません。

載せる条件: 確かめやすいコード
入口を読んだhooks/hooks.json が名指すモジュールをすべて読んだ。hooks/register.tsx
解析できるすべてのファイルが TypeScript か JavaScript として解析できる。7 ファイルを解析
コードが Mod の中で完結import は Mod 自身のファイルかエンジンのモジュールだけ。パッケージも require もない。コードはすべて Mod の中
読める圧縮した行・eval・new Function・計算した道の import()・符号化した塊がない。圧縮・eval・符号化した塊なし
呼び出しが見える通信とプログラム起動はその場で $.http.fetch・$.process.run と書き、他へ渡さない。外への呼び出しはすべてその場の $ で
入れる前に自分で判断する材料
描く場所コードから読んだ、描く先。ターミナル・デスクトップアプリ・両方・何も描かない(フックだけ: 見張りやプロンプトの書き換え)のどれか。出すだけで、外す理由にはしない。ターミナルとデスクトップアプリに同じように描く
入れる手順リポジトリ自身の .claude-plugin/marketplace.json にこの Mod が載っていて、ページに書いた手順でそのマーケットプレイスから入れられるか。リポジトリの .claude-plugin/marketplace.json に載っておらず、入れる手順は出せない
Windows のプログラム$.process で起動するプログラムが Windows にあるか(tail・date・open・osascript・/usr/… などは無い)。hooks/register.tsx:46 /usr/bin/security(Windows にない); hooks/register.tsx:73 /usr/bin/security(Windows にない); hooks/register.tsx:79 /usr/bin/security(Windows にない); hooks/register.tsx:91 /usr/bin/security(Windows にない); hooks/register.tsx:101 /usr/bin/security(Windows にない)
通信fetch の送り先(https のホスト)がコードに書いてあるか。通信なし
プログラム起動するプログラムの名前がコードに書いてあり、シェル・インタプリタ・通信用の道具でないか。hooks/register.tsx:146 実行時に決まるプログラム; hooks/register.tsx:295 /bin/sh(シェル・インタプリタ); hooks/register.tsx:340 /bin/sh(シェル・インタプリタ); hooks/register.tsx:447 /bin/bash(シェル・インタプリタ); hooks/register.tsx:579 /bin/sh(シェル・インタプリタ)
読んで送るファイルや環境変数を読み、かつ通信するか。通信しない
ソースの鍵ソースに API キーや秘密鍵らしきものがあるか。ソースに鍵なし
ライセンスオープンなライセンス(MIT・Apache-2.0・BSD・ISC・Unlicense・0BSD・CC0)で全文があれば、modscode にコードを載せる。違えばリンクだけ。ライセンスなし

コードの文面を読んだだけで、安全の審査ではありません。動かしてはおらず、起動するプログラムの中で何が起きるかも見えません。入れる前の確認はあなたの役目です。 載せる条件

入れる

入れる前に、必ず自分で確かめてください。Mod はサンドボックスなしで、あなたの権限で動きます。modscode はこのコードの安全を保証しません。下のコードを読み(またはフォルダーで claude plugin validate .)、触るものを見て、読んだコミットを入れてください。

リポジトリの .claude-plugin/marketplace.json にこの Mod が載っていないため、入れる手順は出せません。コードとして読むか、作者の README に従ってください。

Claude に聞く

modscode のコネクタを入れると、Claude がこのデザイン・コードが触るもの・コードを読んで、それをもとに作れます。たとえば:

modscode のデザイン「yocloud-code-vault」をコードごと読んで、同じようなペインを作って

Claude から探す: MCP コネクタ

似たデザイン