# Hooks

> Use this tool when you need to execute project-specific development workflows, such as running tests or linters, within a secure and sandboxed environment. It solves problems related to command execution, parameter substitution, and security, providing a safe way to integrate AI assistants with development tools like pytest, ruff, or mypy. The tool takes YAML configuration files as input and outputs clean, formatted results, making it ideal for use cases where secure and reliable automation is crucial.

Canonical page: https://skillsregistry.net/skills/scosman-hooks  
JSON: https://api.skillsregistry.net/v1/skills/scosman-hooks

## Description

HooksMCP server that exposes project-specific development tools (tests, linters, formatters, type checkers) through YAML configuration files, enabling AI assistants to execute common development workflows within project boundaries. Built by Steve Cosman, the implementation provides secure command execution with path validation, parameter substitution, and shell injection protection, supporting various parameter types including project file paths, environment variables, and user-provided strings. Features comprehensive security measures including directory traversal prevention, ANSI code stripping for clean output, and configurable timeouts, making it valuable for developers who want AI assistants to run project-specific tooling like pytest, ruff, or mypy without compromising system security or breaking out of project sandboxes.

## Trust

- **Trust score (0–1):** 0.60
- **Verification tier:** scanned
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/scosman-hooks)
- **Repository:** <https://github.com/scosman/hooks_mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "scosman-hooks"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/scosman-hooks` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/scosman-hooks/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
