Free settings score
Score your settings without installing anything.
Paste your Claude Code settings.json and get a score and the top three findings. It is scored in this tab and never uploaded.
connect-src 'none'), so it cannot send what you paste anywhere. Check it yourself: open DevTools, go to the Network tab, then click Score.
Where do I find this file?
Claude Code keeps its settings in your home folder, in a directory macOS hides by default. There is usually one file; there may be up to three.
~/.claude/settings.json — your settings,
the one to use
~/.claude/settings.local.json — local overrides, if you have any
.claude/settings.json — inside a project, if it has its own
In Terminal, copy it to the clipboard, then paste it here:
pbcopy < ~/.claude/settings.json
Using “Open file…”, the dialog opens somewhere
that will not show a dotted folder. Press ⇧⌘G,
type ~/.claude and press Return — or press
⇧⌘. to reveal hidden folders.
Nothing there? Then Claude Code is running on its defaults and has no settings to score. A project's own file tells you about that project only, not about your machine.
RESULTSCORED IN THIS TAB
Your score and top three findings appear here.
In Terminal, cat ~/.claude/settings.json | pbcopy copies the file to your clipboard.
What this checks, and what it doesn't
This page runs a small set of checks on one file: blanket and interpreter grants, pre-approved deletion and network tools, reads of credentials and personal data, auto-approval modes, project MCP servers, allow-list size, and whether anything inspects commands before they run.
It is not the app's score. The app runs the full rule pack against the whole machine, including every settings layer, hooks, scheduled jobs, connectors and other agents, and it can block commands as they happen. Download for macOS.