SLOPSHOPPER

scope-watch

Warn when observed file edits leave a chosen path prefix.

newpaneguardcommandtoast
A shopper browsing a rack in a slop shop
Preview · a replayed session in a sandbox
claude · ~/work/app · scope-watch
│ ┃ Scope Watch ✕ › fix the failing auth test and add an audit log call │ ┃ Scope Watch │ ┃ ⏺ Read(src/auth.ts) │ ┃ Warn when observed file edits leave a chosen ⎿ Read 6 lines │ ┃ path prefix. ⏺ Update(src/auth.ts) │ ┃ ⎿ Added 2 lines, removed 1 line │ ┃ Expected path prefix: src/ ⏎ watch ⏺ Bash(bun test) │ ┃ ⎿ 3 pass, 1 fail │ ┃ Advisory only. Bash and MCP edits are not │ ┃ detected. ● Done. refresh now rejects expired claims and logs an audit event. │ ┃ │ ┃ No out-of-prefix edits observed. ✻ Worked for 42s · done 4:20 PM │ ┃ │ ┃ r: Refresh › /scope-watch │ │ ────────────────────────────────────────────────────────────────────────────────────────────────────────────────────── › ? for shortcuts

Draws

Pane · Scope Watch
Scope Watch Warn when observed file edits leave a chosen path prefix. Expected path prefix: src/ ⏎ watch Advisory only. Bash and MCP edits are not detected. No out-of-prefix edits observed. r: Refresh
README

Scope Watch

Warn when observed file edits leave a chosen path prefix.

Use it when: Notice scope creep during a focused change.

Scope Watch render preview

Screenshot of this mod's render tree in the fixture preview, with sample data. This is not a capture of the Claude Code application. How previews are made.

Install and open

claude plugin marketplace add whyashthakker/awesome-claude-code-mods
claude plugin install scope-watch@awesome-claude-code-mods

Run /reload-plugins in an existing session, then /scope-watch. Use Tab and Enter to operate controls; Esc closes the pane. Terminal and Desktop Code tab supported; pane UI is unavailable in claude -p and the VS Code chat panel.

Try the source without installing:

claude --plugin-dir ./mods/scope-watch

Access and behavior

Observes Edit/Write paths, reads session cwd, and toasts on out-of-prefix edits. Does not block calls.

Module variables reset on hot reload. Diagnostic history begins when the mod loads and lasts until reload or process exit; it does not reconstruct earlier activity. All display output is bounded; viewers may truncate long content to 9,000 characters. Relative file paths and Git commands use the session working directory.

Verify

Tested with Claude Code 2.1.288. Minimum documented mods version: 2.1.287. The API can change; validate against your installed version.

claude plugin validate mods/scope-watch --strict
claude plugin test mods/scope-watch

Tests cover plugin commands, pane isolation, both UI surfaces, and the behavior described in tests/register.test.ts. Drawing tests validate element trees; they do not verify pixels painted by the native apps. Validation details.

MIT licensed. No runtime packages or build step required.

Source 2 files
hooks/register.js 48 lines
1import { clean, text, code, row, frame, bar, pretty, bounded, entries, safePath } from './ui.js'
2const ID = "scope-watch"
3let prefix='src/',warnings=[]
4export function register(on) {
5  on('session.start', async ($, e, next) => {
6
7    await $.command.register({name:ID, description:"Warn when observed file edits leave a chosen path prefix.", immediate:true, argumentHint:""})
8    return next(e)
9  })
10  on('command.run', {command:"scope-watch"}, async ($, e) => {
11
12    await $.ui.open({id:ID,title:"Scope Watch",focus:true,closeOnEscape:true})
13    return {}
14  })
15
16on('tool.call',{tool:['Edit','Write']},async($,e,next)=>{
17 const r=await next(e)
18 const cwd=(await $.session.cwd()).replace(/\/$/,'')+'/'
19 const path=e.file_path.startsWith(cwd)?e.file_path.slice(cwd.length):e.file_path
20 if(!r.deny&&!r.isError&&!path.startsWith(prefix)){
21  warnings=[...warnings,clean(path,500)].slice(-30)
22  $.ui.toast('Edited outside watched prefix: '+clean(path,120))
23  $.ui.invalidate('ui.render')
24 }
25 return r
26})
27
28  on('ui.render', {component:'Pane'}, async ($, e, next) => {
29    if(e.requestId !== ID) return next(e)
30    const E = $.ui.resolve(e)
31    try {
32      const body = await draw($, E)
33      return frame(E,"Scope Watch","Warn when observed file edits leave a chosen path prefix.",body)
34    } catch(error) {
35      return frame(E,"Scope Watch",'Unable to inspect this data.',[text(E,error.message,{color:'yellow'}),E.Button({key:'refresh',label:'Refresh',onPress:()=>$.ui.invalidate('ui.render')})])
36    }
37  })
38}
39async function draw($, E) {
40  const refresh = E.Button({key:'refresh',label:'Refresh',hotkey:'r',plain:true,onPress:()=>$.ui.invalidate('ui.render')})
41
42return [E.Input({key:'prefix',label:'Expected path prefix',value:prefix,submitLabel:'watch',onSubmit:(v)=>{prefix=v.trim();warnings=[];$.ui.invalidate('ui.render')}}),
43 text(E,'Advisory only. Bash and MCP edits are not detected.'),
44 ...warnings.map(p=>text(E,p,{color:'yellow'})),
45 ...(warnings.length?[]:[text(E,'No out-of-prefix edits observed.')]),refresh]
46
47}
48
hooks/ui.js 36 lines
1// Pure UI helpers. No engine access; each plugin contains its own copy.
2export function clean(value, limit = 9000) {
3  return String(value ?? '').replace(/[\u0000-\u0008\u000b\u000c\u000e-\u001f\u007f-\u009f]/g, '').slice(0, limit)
4}
5export function text(E, value, props = {}) {
6  return E.Text({ ...props, children: [clean(value)] })
7}
8export function code(E, value, language = 'text') {
9  return E.Code({ source: clean(value), language })
10}
11export function row(E, children) {
12  return E.Box({ flexDirection: 'row', columnGap: 2, flexWrap: 'wrap', children })
13}
14export function frame(E, title, subtitle, children) {
15  return E.Box({ flexDirection: 'column', gap: 1, children: [
16    text(E, title, { bold: true, color: 'cyan' }),
17    text(E, subtitle, { dimColor: true }), ...children,
18  ] })
19}
20export function bar(percent, width = 24) {
21  const p = Math.max(0, Math.min(100, Number(percent) || 0))
22  const n = Math.round(p / 100 * width)
23  return '[' + '#'.repeat(n) + '-'.repeat(width - n) + '] ' + p.toFixed(1) + '%'
24}
25export function pretty(value) { return JSON.stringify(value, null, 2) }
26export function bounded(value, max = 9000) {
27  if (value.length > max) throw new Error('Input exceeds ' + max + ' characters. Use a smaller selection.')
28  return value
29}
30export function entries(value) { return value && typeof value === 'object' ? Object.entries(value) : [] }
31export function safePath(value) {
32  const path = value.trim()
33  if (!path || path.startsWith('-') || /[\x00-\x1f]/.test(path)) throw new Error('Enter a path without control characters or leading flags.')
34  return path
35}
36