Watchdog test fixture, not a mod to install. first-check probe: own prompt.submit hook for a yielded, an unyielded and a clock submit

A second model reviews each step that Claude Code takes and sends it short notes while it works: nit, concern or blocker.

Claude Code 2.1.290 or later. Watchdog is a mod: a plugin whose code Claude Code runs inside your session. The npm stable channel (2.1.285 on 2026-10-06) has no mods. Below 2.1.290 the plugin shows unsupported. Desktop support starts when Claude.app bundles Claude Code 2.1.290 or later.
Check claude --version first. If it is below 2.1.290, move to the npm latest channel: npm install -g @anthropic-ai/claude-code@latest.
/plugin marketplace add matteoantoci/claude-plugins
/plugin install watchdog@matteoantoci-plugins
Then run /watchdog on (reviews are off until you do) and ask Claude for a small change. The note shows as a watchdog: [concern] … line in the transcript and as a card, one line with its first sentence above the prompt box. Click the card's ▸, or press ctrl+x tab and then its letter (a, b, c), to read the whole note with its watchdog, age and state; Esc gives the focus back to the prompt. Run /watchdog status to see each watchdog's reviews, notes, tokens and cost. A card names its watchdog when you run two or more.
At its right end a card shows only what needs a look: the subagent type for a note on a subagent; the state while the note has not reached Claude yet, nudge pending (the plugin starts a turn so that Claude reads it), held or aside (Claude reads it with your next prompt); nothing once it is steered (Claude reads it after its next tool result) or nudged. When Claude edited files after the review read its update, the card says outdated? N edits (the open card says may be outdated: N edits since), and Claude reads the same mark with the note. The next review of the same watchdog sees the edits and the note; when the note no longer holds, it retracts it: the card goes, and a note that waits never reaches Claude. A blocker that may be outdated and came after Claude's reply waits as held for that review before it nudges, so Claude does not go after a bug it already fixed.
plugins/watchdog/hooks/.WATCHDOG.json and WATCHDOG.md files, the session's memory files (such as CLAUDE.md), each update of the agent you work with and, when CLAUDE_WATCHDOG is set in a claude -p run, your project and local settings./watchdog on also sends one 1-token request for each model, to check that it exists. Apart from these model requests through Claude Code, the mod makes no network calls: its code never calls $.http.fetch or fetch.<config>/watchdog/dumps/ (<config> is $CLAUDE_CONFIG_DIR or ~/.claude). It keeps its notes and review state in Claude Code's session state and plugin store. In the terminal, /watchdog dump also copies the dump text to the clipboard.Read, Grep and Glob. A project WATCHDOG.json can grant no more; only <config>/WATCHDOG.json can grant other tools and mcp__* tools. Bash, Edit, Write, NotebookEdit, Agent, SendMessage, AskUserQuestion and ToolSearch are always refused. A reviewer never asks you for a permission.Agent call of a watchdog:* type) when Claude Code would ask, so no dialog or Auto-mode classifier sees it. A permission rule that denies Agent still wins.WATCHDOG.json or WATCHDOG.md sets the number of reviewers, their model, effort and instructions. In a repo you did not write, read these files before /watchdog on. Once on, /watchdog status lists each watchdog with its model, effort and file.opus with medium effort by default (in the demo: 3 reviews, 37.2k tokens, $0.07). The built-in "You should know" mod, when on, runs its own side agent too; turn it off in /plugin to pay for one only./watchdog off stops reviews for this session. /plugin uninstall watchdog@matteoantoci-plugins removes the plugin./plugin (Installed, Watchdog, Configure options) or /config: onByDefault (default false) turns reviews on in each new interactive session. immuneTurns (0 to 5, default 3) is the number of turns after a nudge before the next nudge for a concern; a nudge is a turn that the plugin starts so that Claude reads a note that came after its reply./watchdog status shows both counts, for example nudge 1/1 · blocker 0/2./watchdog or /watchdog status: each watchdog's state, reviews, notes, tokens and cost, and the session totals. For a state such as halted, see docs/failures.md./watchdog on and /watchdog off: turn reviews on or off for this session./watchdog dump and /watchdog dump raw: write the review log to a file (raw adds the review prompts).A WATCHDOG.json in your project or in ~/.claude sets the watchdogs. The load order, every key and the tool grants are in docs/configuration.md. This file adds a second reviewer to the default one:
{ "watchdogs": [{ "name": "default" }, { "name": "security", "model": "sonnet", "effort": "high" }] }
claude -p needs CLAUDE_WATCHDOG=on and has no nudge and no cards: see docs/headless.md.plugins/watchdog/hooks/prices.ts); a model not in it shows $?.npm install sets up the tools and the pre-commit hook. npm run check runs the 6 checks of pre-commit and CI: rules, fmt:check, lint, typecheck, validate and test. See docs/plugin-dev.md. Before a release and before a bump of the pinned Claude Code version, run the live probe by hand, on a real model and login: scripts/live-probe/README.md.
Apache-2.0
hooks/submit.mjs 86 lines1// First check 5 (spec §16.4), adapted from prototypes/first-checks/submit-rows (a TUI session). Three
2// `$.prompt.submit` calls of this mod, one per main `turn.complete`:
3// 1. yield: the hook submits, then awaits a `$` call (yields to the host) before it returns: the own hook should run;
4// 2. none: the hook submits and returns at once, with no `$` call: the own hook rarely runs;
5// 3. clock: a `$.clock.after` callback submits 2 s after the turn, while the session is idle (the §10.3 nudge
6// route): the own hook should not run.
7// The plugin depends on none of these (§10.3), so the check is advisory. Log lines stay in memory and are written
8// by the other hooks, because a write is a `$` call that would turn variant 2 into variant 1.
9const FILE = '__LOG__/fc-submit.jsonl';
10const MARKS = { yield: 'FCYIELD-PONG', none: 'FCNONE-PONG', clock: 'FCCLOCK-PONG' };
11const CLOCK_MS = 2000;
12const lines = [];
13let writing = null;
14let completes = 0;
15
16const rec = (ev, data = {}) => {
17 lines.push(JSON.stringify({ t: Date.now(), ev, ...data }));
18};
19
20const flush = ($) => {
21 const text = `${lines.join('\n')}\n`;
22 writing = (writing ?? Promise.resolve()).then(() => $.fs.write(FILE, text)).catch(() => undefined);
23 return writing;
24};
25
26// The variant whose marker a prompt text holds, or null for the person's prompt.
27const variantOf = (text) => Object.keys(MARKS).find((key) => String(text ?? '').includes(MARKS[key])) ?? null;
28
29const submitText = (variant) => `${MARKS[variant]} Reply with exactly one word: PONG`;
30
31// Submits without awaiting, so the calling hook decides whether it yields.
32const submit = ($, variant) => {
33 rec('submit', { variant });
34 $.prompt.submit({ text: submitText(variant) }).then(
35 () => rec('submit.resolved', { variant }),
36 (error) => rec('submit.rejected', { variant, error: String(error?.message ?? error) })
37 );
38};
39
40export const register = (on) => {
41 on('prompt.submit', async ($, e, next) => {
42 const text = String(e.text ?? '').slice(0, 80);
43 rec('own.submit', { variant: variantOf(e.text), origin: e.origin ?? null, text });
44 await flush($);
45 return next(e);
46 });
47 on('turn.start', async ($, e, next) => {
48 if (!e.agentId) {
49 rec('turn.start', { variant: variantOf(e.text), text: String(e.text ?? '').slice(0, 80) });
50 await flush($);
51 }
52 return next(e);
53 });
54 on('turn.complete', async ($, e, next) => {
55 if (e.agentId || e.isAborted) {
56 return next(e);
57 }
58 completes += 1;
59 rec('complete', { n: completes, answer: String(e.answer ?? '').slice(0, 40) });
60 if (completes === 1) {
61 submit($, 'yield');
62 await $.clock.now();
63 rec('yielded');
64 return next(e);
65 }
66 if (completes === 2) {
67 submit($, 'none');
68 return next(e);
69 }
70 if (completes === 3) {
71 $.clock.after(CLOCK_MS, async () => {
72 rec('clock.fire');
73 try {
74 await $.prompt.submit({ text: submitText('clock') });
75 rec('submit.resolved', { variant: 'clock' });
76 } catch (error) {
77 rec('submit.rejected', { variant: 'clock', error: String(error?.message ?? error) });
78 }
79 await flush($);
80 });
81 }
82 await flush($);
83 return next(e);
84 });
85};
86