Policy Ranger, a free Claude Code managed-settings policy builder (no signup)

NF_921 pts0 comments

Policy Ranger: Free Claude Code Policy Builder | Willow " property="og:description"/> " name="twitter:description"/>

Meet Willow (Formerly Webrix): One Governance Layer for Every AI Agent<br>Read More

Solutions

Marketplace

Resources

Company

Pricing<br>See it in ActionGet Started<br>Book a DemoGet Started<br>Menu<br>Close

Policy Ranger by Willow · Free · No signupMeet Policy Ranger.<br>The Free Claude Code Policy Builder.<br>The free visual policy builder for Claude Code. Set permissions for bash, MCP servers, model config, and hooks, all crafted with industry best practices. Export for macOS, Windows, or Linux MDM. No signup, no catch.<br>Generate my policy. No signup.<br>Arrow Right

No account. No credit card. Export in one click.

Trusted by

DemoWatch Policy Ranger build a policy in 90 seconds<br>Pick a tier, change a rule, export the file your MDM can push.<br>No narration, no setup. That's the whole tool.

How it worksBuild a Claude Code policy in three steps

1. Pick a tier<br>Start from scratch, Minimal, Standard, Strict, or Lockdown. Each seeds the editor with a real, defensible set of rules, not a blank file.

2. Customize<br>Adjust every permission in plain language. The editor shows you exactly what each rule does and who it affects.

3. Export and deploy<br>Download managed-settings.json, .mobileconfig, or .reg. Push through Jamf, Intune, or your MDM. Enforces system-wide, org-wide — developers can't override it.

Generate my policy. No signup.<br>Arrow Right

The EditorA visual editor for Claude Code managed settings

Start from a tier<br>Five hardened presets, Minimal to Lockdown. Pick the closest match, adjust every rule from there.

Edit visually<br>No hand-written JSON, no registry syntax. Set bash, MCP, model, and hook rules in a real interface.

Export for your MDM<br>managed-settings.json, .mobileconfig for macOS, .reg for Windows. One click, ready to push.

Why managed settingsWhy managed settings, not local settings<br>Local settings are a suggestion. Managed settings are policy.

Local settings<br>Live in the developer's home directory<br>Any developer can edit, override, or delete them<br>Bypassed with one --dangerously-skip-permissions flag<br>Per machine, per person, no visibility

Managed settings<br>Pushed through your MDM<br>System-level, can't be edited away<br>The flag itself is disabled by policy<br>Org-wide, enforced on every session

This is how you say yes to Claude Code without betting your codebase on the honor system.

Full coverageEvery control in the Claude Code managed-settings spec<br>Policy Ranger covers every control Claude Code exposes through managed settings.

Bash commands<br>Allow, ask, or block per command. Stop curl, wget, sudo, git push, scp, and rsync before they run.

MCP servers<br>Managed servers only, or none at all. No developer wiring an unreviewed server into your repo.

Model configuration<br>Force Claude.ai account login, block raw API keys at startup, set the models and modes you allow.

Hooks<br>Disable hooks entirely, or scope exactly which ones can fire.

Secrets & files<br>Block reading .env, secrets/**, SSH keys, AWS credentials, and service-account files.

Network tools<br>Block WebFetch, WebSearch, curl, wget, and nc for true air-gapped sessions.

Bypass mode<br>Disable --dangerously-skip-permissions so no one can step around the policy.

Startup notice<br>Show your policy announcement every time Claude Code launches.

Spinner verbs<br>Down to the wording your org sees. Small thing, fully yours.

Trust & credibilityCrafted with industry best practices<br>Policy Ranger's tiers aren't guesses. Every rule is crafted with industry best practices and the deployment patterns we run with the companies that govern AI at scale, built on Anthropic's published Claude Code managed-settings spec.<br>You're not starting from a blank JSON file on a Friday afternoon. You're starting from a hardened baseline a real security team would ship. Free.<br>Built on Anthropic's Claude Code managed-settings spec

The reasonWhy is Policy Ranger free?<br>We build Willow, the platform that governs every AI agent across the enterprise. Every security team we meet is writing its first Claude Code policy from a blank file. That doesn't need a sales call. It needs a tool.<br>So here it is. Policy Ranger, free, no signup, no credit card. When you're ready to enforce policy across every agent and every machine, not just Claude Code, we're right here. When you're not, ship your policy and go.<br>Learn about Willow<br>Arrow Right

Generate my policy

FAQS

What is Policy Ranger?

Policy Ranger is a free Claude Code policy builder for security and platform teams. Create a Claude Code managed-settings policy in minutes, set permissions for bash commands, MCP servers, model configuration, and hooks, then export managed-settings.json, a macOS .mobileconfig, or a Windows .reg file to deploy through your MDM org-wide. No account required.

Is it actually free?

Yes. Unlimited policies, every tier, every export format. No signup to build, no signup to export.

Do you store my policy?

No. It builds in...

policy claude code settings managed ranger

Related Articles