DoorDash Spend Guard
SkillAI & modelsdoordash-spend-guard is a skill that sets a hard spending policy for agent-driven DoorDash ordering through the DoorDash CLI (dd-cli). It enforces per-order ceilings, daily, weekly, and monthly caps, cooldowns between orders, and blocked hours. Every cart mutation and checkout is routed through the dd-guard wrapper script, so limits are applied deterministically before money is spent.
Available today. Use it from your connected AI after setup.
No other account needed.
Have the DoorDash CLI (dd-cli) available for the agent to order with.
Then ask your AI: use the DoorDash Spend Guard skill
What your AI can do with it
- Enforces a per-order spending ceiling on DoorDash orders
- Applies daily, weekly, and monthly spending caps
- Enforces a cooldown period between orders
- Blocks ordering during configured hours
- Routes cart mutations and checkout through the dd-guard wrapper script
- Works with agent-driven ordering through the DoorDash CLI (dd-cli)
Getting started
- Have the DoorDash CLI (dd-cli) available for the agent to order with.
- Install the doordash-spend-guard skill.
- Configure the spending policy: per-order ceiling, daily/weekly/monthly caps, cooldown, and blocked hours.
- Route the agent's cart mutations and checkout through the dd-guard wrapper script so limits are enforced.
What this skill tells your AI
The instructions your AI receives, as published by davila7/claude-code-templates in cli-tool/components/skills/doordash/doordash-spend-guard/SKILL.md and read by ahel’s review.
A budget stated in a prompt is advisory — the model can forget it mid-session
and prompt injection can override it. This skill makes the budget
deterministic: every checkout and cart mutation goes through one audited
wrapper (dd-guard.sh) that prices the cart, checks the policy, and refuses
out-of-policy actions with a machine exit code. The companion PreToolUse hook
(doordash-spend-guard hook component) denies raw dd-cli order checkout-url /
dd-cli cart add-items calls that try to bypass the wrapper.
Unofficial community skill built on DoorDash's
doordash-oss/doordash-cli. Requiresdd-cliinstalled and logged in. Wrapper needspython3.
Honest scope
- Caps apply to the pre-fee subtotal that
cart showexposes; fees, tip and tax land on the DoorDash payment page. Documented headroom, not loopholes. - The ledger records intent when a checkout URL is issued; the human may
abandon the page.
/doordash-budgetreconciles intents againstdd-cli order history, marking entriespaidorabandoned. - Enforcement teeth come from the hook + wrapper combo. Install both; the skill alone is guidance.
Components in this bundle
| Piece | Role |
|---|---|
| this skill | protocol: always route through dd-guard, report headroom |
scripts/dd-guard.sh → installs to .claude/skills/doordash-spend-guard/scripts/dd-guard.sh | the deterministic gate |
hook doordash/doordash-spend-guard | denies bypasses of the wrapper |
command /doordash-budget | view/edit policy, reconcile ledger |
State (created on first run)
~/.claude/dd-guard/limits.json— policy. Human-edited only. Never edit this file yourself; when the user asks for a change, direct them to/doordash-budgetwhich confirms interactively.
{
"per_order_max": 40,
"daily_max": 60,
"weekly_max": 150,
"monthly_max": 400,
"cooldown_minutes": 45,
"allowed_hours": { "start": 7, "end": 23 }
}
~/.claude/dd-guard/ledger.jsonl— one line per priced action:{"ts": "...", "cart_uuid": "...", "subtotal": 24.5, "status": "intent"}(statusbecomespaid/abandonedafter reconciliation).
Protocol (follow ALWAYS while this skill is installed)
- Session start / before building a cart: report headroom —
bash .claude/skills/doordash-spend-guard/scripts/dd-guard.sh statusprints spend-to-date vs each cap. Tell the user their remaining budget before adding items. - Adding items: route through the wrapper —
bash .claude/skills/doordash-spend-guard/scripts/dd-guard.sh add-items <the exact dd-cli cart add-items args>The wrapper execs the realdd-cli cart add-items ...and re-prices the cart afterwards. - Checkout: NEVER call
dd-cli order checkout-urldirectly. Usebash .claude/skills/doordash-spend-guard/scripts/dd-guard.sh checkout <cart-uuid>- exit 0 → it printed the checkout URL and appended a ledger intent line.
- exit 2 → blocked; it printed a human-readable reason (which cap, by how
much). Relay the reason verbatim, then help within policy — e.g. suggest
a cheaper reorder from
dd-cli order historyor trimming the cart withdd-cli cart remove-item.
- When blocked, do not negotiate with the wrapper. No editing
limits.json, no retrying with a fresh cart to reset the cooldown, no
splitting one order into several to duck the per-order cap. If the user
wants a different policy, point them to
/doordash-budget. - If the wrapper reports the cart subtotal as unparseable, it blocks by
design (conservative default). Show the user the raw
cart showoutput and ask them to confirm the total explicitly before any manual override.
Reading the ledger
Answer "how much have I spent this week?" from the ledger, not memory:
bash .claude/skills/doordash-spend-guard/scripts/dd-guard.sh status
# or raw:
cat ~/.claude/dd-guard/ledger.jsonl | jq -s '[.[] | select(.status != "abandoned")] | map(.subtotal) | add'
Remind the user that subtotals exclude fees/tips and intents may not have
been paid — /doordash-budget reconciles.
Signals
- GitHub stars
- 32k
- Forks
- 4k
- Last commit
- Sep 2026
Questions
- How are the spending limits enforced?
- Every cart mutation and checkout is routed through the dd-guard wrapper script, which applies the policy deterministically before an order can go through.
- What limits can be set?
- A per-order ceiling, daily, weekly, and monthly caps, a cooldown between orders, and blocked hours during which ordering is not allowed.
- Does it work with the DoorDash CLI?
- Yes, it is designed for agent-driven DoorDash ordering through the DoorDash CLI (dd-cli).
- Can the agent bypass the limits?
- The policy is enforced deterministically by the dd-guard wrapper script, which intercepts cart mutations and checkout.
Advanced
- Item type
- skill
- Key
doordash-spend-guard- Source
- github.com/davila7/claude-code-templates