Developer platform leaders

Claude Code Security Rollout for Developer Teams

Plan a Claude Code pilot with scoped passports, hook verification, repository checks and audit review before expanding enforcement to more developers.

Choose your rollout path

Team uses organization billing and Stripe Checkout. Enterprise starts with a rollout call to agree the deployment scope.

Install my guardrail

Keep adoption moving with an explicit pilot

Choose one developer team, supported host versions and a test repository. Define which file reads, commands and MCP calls need policy checks. APort's Claude Code integration uses the host's pre-tool hook to evaluate supported actions; installation alone does not demonstrate active enforcement.

Separate configuration from the proof it works

Use the framework guide to install and restart the host, then check that the hook is loaded in the actual session. Run a harmless allowed operation and a prohibited fixture through that session. Compare the policy result with the observed tool effect.

Warn mode may continue after a policy denial. Hosted signatures establish decision integrity, while the runtime evidence establishes whether dispatch stopped. Record both before expanding the cohort.

Assign the rollout and rollback owners

Developer platform owns installation and host compatibility. Security owns policy scope and exceptions. Repository owners decide when to require GitHub checks. IT owns managed-device deployment and approved removal. Schedule a review before changing the enforcement mode across the fleet.

Prepare a reviewed setup

shell
npx @aporthq/aport-agent-guardrails claude-code
npx @aporthq/aport-agent-guardrails mode claude-code --enforcement=warn

Review the configuration and follow the framework verification guide before expanding the pilot.

Product and implementation sources

Choose your rollout path

Team uses organization billing and Stripe Checkout. Enterprise starts with a rollout call to agree the deployment scope.

Install my guardrail