AdamAwan/LubbDubb/tree/main/plugin
이 mod 소개
<p align="center"> <picture> <source media="(prefers-color-scheme: dark)" srcset="docs/brand/logo-dark.svg"> <img src="docs/brand/logo.svg" alt="LubbDubb" width="120"> </picture> </p>LubbDubb
한 소프트웨어 엔지니어의 업무를 위한 셀프 호스팅 상시 실행 오케스트레이션 하네스입니다. 입력(이슈, PR, CI, 리뷰 댓글)을 지켜보는 _조종석_으로서 하트비트마다 할 일을 결정하고 Claude Code agents에 작업을 배정하며, 실제 판단이 필요한 것만 사용자에게 에스컬레이션합니다.
이름은 하트비트에서 왔습니다. 서버의 핵심은 모든 것을 움직이는 주기적 펄스입니다.
무엇을 어디서 읽는가.
docs/mission.md는 이것이 왜 존재하고 업무를 어떻게 바꾸는지 설명합니다. 이 파일은 하네스의 기능, 작업이 통과하는 흐름, 첫날부터 중요한 설정을 다루는 개요입니다.docs/workflow.md에는 다른 흐름이 들어갈 자리까지 포함한 전체 워크플로가 있습니다.docs/는 현재 애플리케이션의 각 부분이 어떻게 동작하는지 사실대로 적은 사양입니다. 모든 설정 키, 디스패치 규칙, agent 런타임, API, 조종석이 포함됩니다. 아래 내용의 세부 사항이 필요하면 그곳을 보십시오.docs/feature-timeline.md에는 지금의 형태가 되기까지의 과정이 기록되어 있습니다.
펄스
하트비트가 구동하는 반복 사이클입니다(heartbeatIntervalMs: 플릿이 바쁠 때 기본 30s, idleHeartbeatIntervalMs: 유휴 상태에서는 5분). 필요할 때 직접 트리거할 수도 있습니다.
snapshot the world → diff against the last snapshot → reconcile plans
→ decide (dispatcher) → execute (executor) → audit
모든 단계를 기록합니다. 디스패처의 근거, 내보낸 모든 작업, 각 작업의 결과를 저장하므로 유휴 사이클도 바쁜 사이클만큼 설명할 수 있습니다. agents는 풀링된 git worktree(코드 작업)나 임시 디렉터리(데스크 작업)에서 실행되고 타입이 지정된 도구 채널로 보고합니다.
하는 일
루프에서 차지하는 위치별로 묶었습니다. 각 줄은 해당 기능의 사양으로 연결됩니다.
작업 받기
| 기능 | 설명 |
| ------------------- | -------------------------------------------------------------------------------------------------------------------------------------- |
| 선택적 감시 | ${labelPrefix}-watch 태그 하나로 이슈와 풀 리퀘스트 모두에서 처리할 대상을 정합니다. 그 밖의 것은 건드리지 않습니다. → [06][s06] |
| 두 제공자 | GitHub와 Azure DevOps를 기능별 경계 뒤에 두고, 전체 테스트 스위트와 데모는 fake 제공자로 실행합니다. → [15][s15] |
| 트래커 상태 | 제공자에 워크플로 상태가 있으면 해당 상태를 충족해야 가져오며, 하네스가 항목을 진행 중과 리뷰 중으로 옮깁니다. → [06][s06] |
| 우선순위와 순서 | 우선순위 레이블이 가져올 항목의 가중치를 정하고, 순위가 매겨진 계획은 Up next로 표시됩니다. 현재 여력에 맞춘 절단선이 있으며 직접 순서를 바꿀 수 있습니다. → [05][s05] |
| 티켓 보드 | 열린 항목과 닫힌 항목을 표로 보거나 상태별 열이 있는 보드에서 볼 수 있으며, 카드를 드래그하면 놓기 전에 비용이 표시됩니다. → [17][s17] |
| 첨부 파일 | 브리프에 첨부한 이미지는 작업할 agent와 함께 이슈로 전달되고 모든 worktree 외부에 저장됩니다. → [12][s12] |
결정하기
| 기능 | 설명 | | --------------------- | --------------------------------------------------------------------------------------------------------------------------------------------- | | 규칙 파이프라인 | 이름이 붙은 20여 개 규칙을 선언된 순서로 훑고 각 규칙이 세계에서 작업을 제안합니다. 순서는 데이터이지 댓글에 적힌 숫자가 아닙니다. → [05][s05] | | 제한된 어휘 | 디스패처는 검증된 11개 작업 중 하나만 요청할 수 있으며, 잘못된 형식은 거부하고 감사 기록을 남기며 실행하지 않습니다. → [05][s05] | | 검사별 CI 정책 | 어떤 검사가 빨간색이 되었는지에 따라 고치거나, 지침과 함께 고치거나, 우리 것이 아니므로 보류하거나, 한 번만 에스컬레이션합니다. → [02][s02] | | 결정 로그 | 실행, 연기, 거부, 건너뛰기를 모두 이유와 생성한 규칙과 함께 기록하고 그 규칙이 존재하는 이유까지 펼쳐 볼 수 있습니다. → [18][s18] | | 쿨다운과 상한 | 출처별 시도 상한과 쿨다운이 있어 계속 실패하는 디스패치는 반복하지 않고 에스컬레이션합니다. → [05][s05] |
작업하기
| 기능 | 설명 | | ---------------------- | ---------------------------------------------------------------------------------------------------------------------------------------- | | worktree의 agents | 제한된 checkout 풀을 브랜치에 대여하고 다시 만들지 않고 전환하므로, 돌아온 브랜치는 준비된 상태로 시작합니다. → [09][s09] | | 타입 지정 도구 채널 | agents가 콜백하는 MCP server로, 세계를 읽고 배운 내용을 올리고 풀 리퀘스트를 열고 검사를 보고합니다. → [11][s11] | | 권한 안전장치 | agent가 허용 목록 밖의 명령을 만나면 멈추지 않고 사용자에게 묻습니다. → [11][s11] | | 규칙별 모델 | 디스패치 규칙마다 이름 있는 프로필(모델과 실행 깊이)을 배정하므로 충돌 수정과 계획의 가격이 같지 않습니다. → [02][s02] | | 작업과 일정 | 조종석에서 임시 프롬프트를 큐에 넣거나 cron 표현식으로 사용자를 위해 큐에 넣습니다. 둘 다 다른 작업처럼 슬롯을 기다립니다. → [13][s13] | | 충돌 복구 | 재시작으로 고아가 된 agents를 대기시키고, 각각을 복구·재큐·제거할 때까지 펄스를 멈춥니다. → [10][s10] | | 실시간 기록 | agent를 클릭해 무엇을 하는지 읽고 입력하고 실행 중 생성한 것을 봅니다. → [10][s10], [12][s12] |
풀 리퀘스트
| 기능 | 설명 | | ------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------- | | 상태 조건 | CI 실패, 기준과 뒤처지거나 충돌함, 처리되지 않은 리뷰 스레드, 병합 가능 상태를 점검합니다. 브랜치당 agent 하나가 가장 중요한 우려부터 처리합니다. → [07][s07] | | 플릿 리뷰 | 기본값은 꺼짐입니다. 사람에게 묻기 전에 하네스가 풀 리퀘스트를 직접 읽고 얼마나 깊이 볼지 분류합니다. → [07][s07] | | 리뷰 답변 | 처리되지 않은 스레드마다 agent 하나를 보내 하네스를 통해 답하고, 서명·기록하며 제공자 자체 스레드에서 해결합니다. → [07][s07] | | 스택 | 한 부분은 의존하는 부분 위에 놓이고, 빨간 기준은 소유한 PR에 귀속되며, 병합은 아래에서 위로 진행됩니다. → [07][s07] | | 사용자 대기 | 누군가 사용자에게 할당한 풀 리퀘스트, 요청한 사람, 머문 시간을 보여 줍니다. → [17][s17] |
목표별 퍼널
| 기능 | 설명 |
| --------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------- |
| 목표 평가 | 여기서 작업할 목표가 있는가? 거부하면 티켓에 빠진 내용을 적고 목표 문장이 바뀌면 해제합니다. → [08][s08] |
| 계획 | 풀 리퀘스트 하나 또는 의존성에 따라 여러 부분으로 분해하며 각 부분에 브랜치와 범위가 있습니다. “이미 완료”일 수도 있습니다. → [08][s08] |
| 계획 승인 | 항상 필요합니다. 계획에는 위험, 제외 범위, 성공 여부를 아는 방법이 포함되고 대화형 플래너와 논의할 수 있습니다. → [08][s08] |
| 평가 | agent의 확신이 아니라 전달된 것을 평가합니다. no 쪽은 다시 계획하거나 부분을 추가하거나 에스컬레이션합니다. → [08][s08] |
| 검증 | 전달된 것을 실행해야만 답할 수 있는 검사를 사람에게 쓰거나 자신의 Claude Code에 넘깁니다. → [20][s20] |
| 회고 | 전달된 목표마다 하나씩, 공유 스크래치패드와 하네스가 기록한 비용에서 작성합니다. → [13][s13] |
| 마무리 | 하네스는 티켓을 닫지 않습니다. 사용자 이름으로 상시 의무를 기록하고 트래커에서 열린 항목으로 더 이상 표시되지 않을 때 정리합니다. → [13][s13] |
반영된 뒤
| 기능 | 설명 |
| --------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------- |
| 환경 | 기본값은 꺼짐입니다. 각 PR이 반영된 커밋과 각 환경에 아직 있는지를 직접 명령으로 묻고, 결과는 세 값 중 하나입니다. → [24][s24] |
| 도착 | 어딘가에 도착하면 전달된 목표가 사용자에게 남긴 의무가 열리거나 티켓에 줄이 추가될 수 있습니다. 환경별로 선택 적용합니다. → [24][s24] |
| 배포 후 감시 | 목표가 실행 중인 시스템에서 보여야 할 것을 선언하고, 도착이 창을 열며, 일정에 따라 텔레메트리를 묻습니다. 모델은 없습니다. → [29][s29] |
| 장애물 | 플릿을 막는 것을 문장으로 맞추지 않고 키로 식별합니다. 서로 독립적인 두 목소리, 소유자, 사람이 아닌 종료 조건이 있습니다. → [27][s27] |
| 플릿 간 풀 | fleet보다 위의 거리입니다. 공유 저장소에 플릿마다 하나의 네임스페이스를 두고, 뒷받침 모델과 다이제스트를 둡니다. → [28][s28] |
하네스 자체 감시
| 기능 | 설명 | | -------------- | ----------------------------------------------------------------------------------------------------------------------------------------- | | 사용자 필요 | 에스컬레이션, 계획 승인, 외부 제안, 권한 요청, 설정 상태, 전달이 남긴 의무를 한 레일에 모읍니다. → [17][s17] | | 인사이트 | 실행 비용과 결과를 보여 주고, 버킷 중앙값의 몇 배를 쓴 실행을 드러내는 실시간 소모 감시도 제공합니다. → [18][s18] | | 활주로 | 플릿에 남은 작업이 있는지를 플릿 시간으로 측정하고, 없는 이유가 사용자인지도 보여 줍니다. → [25][s25] | | 설정 상태 | 플릿을 조용히 멈출 수 있는 각 설정을 한 줄로 보여 주고 조언이 아니라 실제 세계 확인으로 끝냅니다. → [26][s26] | | 오류 로그 | 잡힌 모든 실패가 모이는 하나의 경로입니다. 저장하고 stderr에 미러링하며 조종석으로 스트리밍합니다. → [18][s18] | | 셀프 업데이트 | 하네스가 자체 빌드를 감시하고 비운 뒤 supervisor에게 넘겨 교체합니다. → [21][s21] | | 로컬 실행 | 컴퓨터의 유일한 개발 환경을 조종석에서 시작하고 중지하며, 출력은 플릿 alr
설치
먼저 작성자의 README에서 marketplace와 플러그인 이름을 확인하세요. 저장소 구조에 따라 명령어가 달라질 수 있습니다.
claude plugin marketplace add AdamAwan/LubbDubb claude plugin install lubbdubb
원문 / README
LubbDubb
A self-hosted, always-running orchestration harness for one software engineer's work — a cockpit that watches your inputs (issues, PRs, CI, review comments), decides what to do on a heartbeat, and dispatches Claude Code agents to do it, escalating to you only what genuinely needs judgment.
The name is the heartbeat: the server's core is a periodic pulse that drives everything.
Where to read what.
docs/mission.mdis why it exists and what it changes about the job. This file is the overview: what the harness does, how work flows through it, and the configuration that matters on day one.docs/workflow.mdis the workflow in full, including where a different one slots in.docs/spec/is the specification of how every part of the application behaves today, written as fact — every config key, every dispatch rule, the agent runtimes, the API, the cockpit. If you want the detail behind anything below, it is in there.docs/feature-timeline.mdis how it got this way.
The pulse
One repeating cycle, driven by a heartbeat (heartbeatIntervalMs, default 30s while the fleet is
busy; idleHeartbeatIntervalMs, 5 minutes, while it is not) and also
triggerable on demand:
snapshot the world → diff against the last snapshot → reconcile plans
→ decide (dispatcher) → execute (executor) → audit
Every step is recorded. The dispatcher's rationale, every action it emitted, and the outcome of each action are persisted — so an idle cycle is as explainable as a busy one. Agents run in pooled git worktrees (code work) or scratch dirs (desk work), and report back over a typed tool channel.
What it does
Grouped by where in the loop it sits. Each line links to the spec that owns it.
Taking work in
| Feature | What it is |
| ---------------------- | -------------------------------------------------------------------------------------------------------------------------------------------- |
| Opt-in watching | One ${labelPrefix}-watch tag decides what is acted on, on issues and pull requests alike. Nothing outside it is touched. → 06 |
| Two providers | GitHub and Azure DevOps behind per-capability seams, plus a fake provider the whole suite and the demo run on. → 15 |
| Tracker states | Where the provider has workflow states, pickup is gated on them and the harness moves the item to in-progress and in-review. → 06 |
| Priority and order | Priority labels weight pickup; the ranked plan ships as Up next with a cut-line at current headroom, re-orderable by you. → 05 |
| Tickets board | Every open and closed item, as a table or a column-per-state board you drag cards across — the drop's cost said before it lands. → 17 |
| Attachments | Images attached to a brief follow the issue to whichever agent works it, stored outside every worktree. → 12 |
Deciding
| Feature | What it is | | ------------------------ | --------------------------------------------------------------------------------------------------------------------------------------------------- | | A rule pipeline | Two dozen named rules walked in a declared order, each proposing work from the world. The order is data, not numbers on a comment. → 05 | | A bounded vocabulary | The dispatcher can only ever ask for one of eleven validated actions; anything malformed is rejected and audited, never executed. → 05 | | Per-check CI policy | What to do about which check went red — fix it, fix it with guidance, hold it because it is not ours, or escalate once. → 02 | | The decision log | Executed, deferred, rejected and skipped alike, each with its reason and the rule that produced it, expandable to why that rule exists. → 18 | | Cooldowns and caps | Per-origin attempt caps and cooldowns, so a dispatch that keeps failing escalates instead of looping. → 05 |
Doing the work
| Feature | What it is | | ------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------- | | Agents in worktrees | A bounded pool of checkouts leased to branches and switched rather than recreated, so a branch that comes back starts warm. → 09 | | A typed tool channel | An MCP server agents call back on — read the world, raise what they learned, open a pull request, report a check. → 11 | | A permission backstop | An agent hitting a command outside the allow-list asks you rather than hanging. → 11 | | Models per rule | Named profiles — a model and the depth it runs at — assigned per dispatch rule, so a conflict fix and a plan are not priced alike. → 02 | | Jobs and schedules | An ad-hoc prompt queued from the cockpit, or queued for you on a cron expression. Both wait for a slot like everything else. → 13 | | Crash recovery | Agents orphaned by a restart are parked, and the pulse is held, until you restore, requeue or remove each one. → 10 | | Live transcripts | Click an agent and read what it is doing, type into it, and see what it produced mid-run. → 10, 12 |
Pull requests
| Feature | What it is | | ---------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------- | | Health predicates | Failing CI, behind or conflicting with its base, unhandled review threads, ready to merge — one agent per branch, top concern first. → 07 | | The fleet review | Off by default: the harness reads a pull request of its own before a person is asked, with a triage that picks how thoroughly. → 07 | | Answering a review | Every unhandled thread goes to one agent, replied to through the harness — signed, recorded, and resolved on the provider's own threads. → 07 | | Stacks | A part is based on the part it depends on; a red base is attributed to the PR that owns it, and merging is bottom-up. → 07 | | Waiting on you | A pull request somebody assigned you, who asked, and how long it has been sitting there. → 17 |
The funnel, per goal
| Feature | What it is |
| ------------------ | --------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Goal appraisal | Is there a goal here to work from? A refusal says what is missing, on the ticket, and lifts when the goal text changes. → 08 |
| Planning | One pull request, or a dependency-chained decomposition into parts each with its own branch and scope — or "this is already done". → 08 |
| Plan approval | Always. A plan carries risks, scope-outs and how anyone will know it worked, and can be discussed with a conversational planner. → 08 |
| Assessment | Asked of what was delivered, not of the agent's confidence. Its no arm replans, adds a part, or escalates. → 08 |
| Validation | Checks that can only be answered by running the delivered thing, written for a person — or handed to your own Claude Code. → 20 |
| Retrospective | One write-up per delivered goal, from the shared scratchpad and the harness's own record of what it cost. → 13 |
| Close-out | The harness never closes a ticket. It files a standing obligation with your name on it, which settles once the tracker stops listing it open. → 13 |
After it lands
| Feature | What it is |
| ------------------------ | -------------------------------------------------------------------------------------------------------------------------------------------------- |
| Environments | Off by default. The commit each PR landed as, and whether each environment has it yet — asked with your own command, three-valued. → 24 |
| Arrivals | Arriving somewhere can be what opens what a delivered goal owes you, and what puts a line on the ticket. Both opt-in, per environment. → 24 |
| Post-deploy watch | A goal declares what a running system must show; an arrival opens a window, and your telemetry is asked on a schedule. No model in it. → 29 |
| Obstacles | What is in the fleet's way, keyed rather than matched on prose: two independent voices, an owner, and an exit that is never a person. → 27 |
| The cross-fleet pool | The distance above fleet: one namespace per fleet in a shared repository, with a corroboration model and a digest. → 28 |
Watching the harness itself
| Feature | What it is | | ----------------- | ------------------------------------------------------------------------------------------------------------------------------------------------- | | Needs you | One rail: escalations, plan approvals, outbound proposals, permission requests, config health, and the obligations a delivery leaves. → 17 | | Insights | What runs cost, what they yielded and what came out — plus a live burn watch that surfaces a run several times its bucket's median. → 18 | | The runway | Whether there is work left for the fleet, measured in fleet time — and whether the reason there is not is you. → 25 | | Config health | One row per setting that can stop the fleet silently, each ending in a check against the real world rather than advice. → 26 | | The error log | The one path every caught failure funnels through: persisted, mirrored to stderr, streamed to the cockpit. → 18 | | Self-update | The harness watches its own build, drains, and hands off to a supervisor that replaces it. → 21 | | Local runs | The machine's one dev environment, brought up and taken down from the cockpit, with its output in the pane the fleet already has. → 23 | | Pets | A vivarium at the foot of the rail. Your actions drop eggs; the eggs hatch. It gates nothing. → 22 |
The flow of work
Two entry points, one path. A prompt states a goal and a ticket is found or created for it; a ticket states its own. Everything downstream keys on the ticket, so work started from a prompt is as recoverable, reviewable and reportable as work started from the tracker.
flowchart TD
P([Start with a prompt]) --> G[Goal is stated]
T([Start with a ticket]) --> TK
G -- find or create --> TK[Ticket]
TK --> V{Enough information<br/>to proceed?}
V -- no --> AL[Say what is missing,<br/>on the ticket]
AL --> UW([Stop working it])
UW -. the goal text changes .-> TK
V -- yes --> PL[Plan the work]
PL --> AP{Plan accepted?}
AP -- no, revise --> PL
AP -- yes --> WK[/Do the work/]
WK --> QG{Quality gates<br/>review, CI, a person}
QG -- not satisfied --> WK
QG -- satisfied --> M[Merge]
M --> GC{Goal achieved?}
GC -- no --> PL
GC -- yes --> DV[Deliver: validate, write up,<br/>hand back what is yours]
DV --> AR{Configured<br/>environments?}
AR -- yes --> EN[Watch it arrive,<br/>then watch it behave]
AR -- no --> D
EN --> D([Done])
The standard steps
| Step | What happens |
| ----------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Intake | Every open issue/PR is fetched and shown. What is acted on is decided by the watch tag, plus tracker workflow states where the provider has them. |
| Enough information? | One agent reads the ticket against the repository and says whether there is a goal here to work from. Only an explicit unclear holds anything. |
| Plan the work | A planning agent reads the repo and returns either one PR will do, a decomposition into dependency-chained parts, or this goal is already met. |
| Plan accepted? | Every plan verdict appears in Needs you. Accepting releases the parts to be scheduled; rejecting falls the issue back to the single-PR path, and it can be held. |
| Do the work | An agent per part (or one for the whole issue), each in its own worktree. Code is the most common arm, not the only one — a part may finish with a report. |
| Quality gates | The fleet's own review of the diff (opt-in), then tests, static analysis, pipeline health and human review. Each failing check is classified per check. |
| Merge | A green, approved, mergeable, comment-clear PR is merged — bottom-up for a stack, and never while it is based on another in-flight branch. |
| Goal achieved? | Asked of what was actually delivered, not of the agent's confidence. A no returns to planning, because what is missing may be a different decomposition. |
| Deliver | A validation sheet of checks only a person or a running system can answer; a retrospective written from the record; the tracker state moved and a status comment. |
| Close out | Nothing closes the ticket. A standing obligation with your name on it is filed, and settles itself once the tracker stops listing the item open. |
| Arrival | Where environments are configured: the commit each PR landed as, whether each environment has it yet, and — where declared — whether it is behaving now it is there. |
The gates that carry the loop
Each is a decision something has to make, not a step that always passes.
- Enough information to proceed rejects a goal nothing can act on, before an agent spends itself discovering that. Refusal is not silent — it says what is missing, on the ticket — and it is not permanent: the hold ends when the goal text changes, or when anyone comments.
- Plan accepted is where you see the shape of the work before it happens. There is no switch for it: a plan that started itself can only be undone by a replan, which is strictly worse.
- Quality gates are a set, not a list — tests, static analysis, pipeline health, human review, and the fleet's own review where it is on. The classification is per check, and the third reading is the one that matters: red, but not ours holds and says why, rather than sending an agent at a wall.
- Goal achieved is asked of the delivered work. Its
noarm proposes a replan, a follow-up part, or escalates — depending on what the assessment says fell short.
Priorities when headroom is scarce
The dispatcher ranks every candidate, then applies the concurrency cut. Roughly, highest first:
- An operator queued a job from the cockpit — takes the next free slot.
- A PR with problems: failing CI, a stale or conflicting base, an unhandled review comment.
- A PR that is ready to merge.
- Planning, approval, appraisal and assessment for issues.
- Plan parts, then fresh issue pickup.
PR work runs before new issue pickup, so a PR in trouble is always worked ahead of starting new tickets. The full ordered plan ships to the cockpit as Up next, with a cut-line at the current headroom; you can re-order it, and the override persists.
Where you are in the loop
The harness owns the loop; you own the verdicts. You are asked when — and only when — a decision is genuinely yours:
- Needs you collects escalations, plan approvals, outbound-act proposals, permission requests from agents that hit a command outside the allow-list, the config checks, and what a delivered goal still owes you — a validation sheet to run, a ticket to close.
- Nothing side-effectful leaves without a human, save two standing authorities that are yours: a
stack landing you clicked over named pull requests, and
sendPrRepliesWithoutApproval, on by default, which sends a drafted review reply straight to the thread. A rejection stands until the world gives a reason to ask again — a push, a CI result, an approval, a comment — and the reason you typed is handed to the next agent that works that item. - A restart never decides for you. Agents orphaned by a crash or shutdown are parked, and the heartbeat is held until you restore, requeue or remove each one.
Two things are deliberately fixed: every act reaching the outside world is authorized, and an agent declares that it finished — silence never reads as success.
Getting started
Node >=22.12 and git. A fresh clone installs with npm ci — node-pty is a
native build, so it is not instant (on npm 12+ it builds because package.json
lists it in allowScripts).
npm ci # native dep: node-pty
cp lubbdubb.config.example.json lubbdubb.config.json # your local config (gitignored)
npm start # builds the cockpit, serves on 127.0.0.1:4300
Every key in the config is optional and the harness boots with no file at all — but the defaults
select the real Claude Code runtime, while the shipped example selects the mock one (agentMode: "raw"
against the built-in fake providers). So copy it for a first run and the whole loop turns with no
model or provider credentials. From then on the cockpit's Config page edits that same file
directly, key by key, leaving its comments and ordering alone — hand-editing and the form are two ways
at one file.
npm start builds the cockpit bundle and then runs the server. Two variants matter:
npm run start:server skips the build and serves whatever web/dist already holds, and
npm run serve runs the server under the supervisor that can replace it — which is what
self-update needs, and the way to run it under systemd, NSSM or a long-lived terminal.
→ docs/spec/21
Boot prints what it decided, and the link to open:
[lubbdubb] cockpit listening on 127.0.0.1:4300
[lubbdubb] open the cockpit: http://127.0.0.1:4300/#t=<token>
[lubbdubb] token minted at .lubbdubb/cockpit-token (0600) — reused on the next start
[lubbdubb] heartbeat=300000ms cap=3
[lubbdubb] agent tools: on
Open it once per browser and the cockpit remembers the token. The harness binds loopback only and
every route needs that token, because the cockpit can queue a job — and a job spawns a real agent with
write access to your repo. The token file is gitignored, along with the rest of .lubbdubb/ (the
SQLite database, worktrees, desk scratch dirs and attachments all live under it).
One click: the Claude Code plugin
The harness ships a Claude Code plugin for your own Claude Code: the /lubbdubb:… skills every
Open in Claude Code link in the cockpit calls (/lubbdubb:check 284:C, /lubbdubb:plan 284,
/lubbdubb:ask 284, …), the desktop tool channel those skills talk to, and a notice board: a status
line above your prompt and a panel beside the transcript with what the harness is waiting on you for,
feature progress, pull request states, the fleet and what is up next. Boot writes it to ~/.lubbdubb/plugin:
[lubbdubb] Claude Code plugin 1.0.0-… written to ~/.lubbdubb/plugin — install or update it from the cockpit's MCP tab
Until it is installed the cockpit shows a banner under the top bar; Install it opens the MCP tab,
whose button runs claude plugin marketplace add and claude plugin install for you at user scope, and
removes the hand-registered lubbdubb MCP server and the old /lubbdubb skill if you had them. Restart
open Claude Code sessions to pick it up. Skip it and nothing breaks: every check simply falls to the fleet.
→ docs/spec/11
Then: use Inject event to simulate the world moving (a CI failure, a review comment) and watch the
harness react; click an agent to see its live transcript and type into it; answer items in Needs
you; use New job to launch an ad-hoc prompt, or New schedule to have one queued on a cron
expression (0 9 * * 1-5 — weekdays at nine, read in the harness's own timezone). The Decision log
shows what was decided each cycle and which rule produced it; Activity shows how the world itself
changed.
Needs you also carries the configuration checks — one row per setting that can stop the fleet silently, each ending in a check against the real world rather than a sentence of advice. On a fresh install that rail is the shortest route from the mock loop to a working deployment. → docs/spec/26
Configuration
Every key is optional, and every key, its default and its precedence is in
docs/spec/02-configuration.md. These are the ones that decide
whether a deployment works at all:
| Key | Default | Why it matters |
| ------------------------------ | --------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------- |
| repoRoot | the directory you launch in | The git repository worktrees are cut from. Left alone, the harness works on its own checkout. |
| integrations | all fake | Which provider serves each capability — sourceControl, issues, pool. fake is the mock world the demo and the suite run on. |
| github / azureDevOps | unset | The provider's own target: owner and repo, or organization, project and repository. |
| userId | unset | Who you are to the provider. Pickup reads label authorship, so without it nothing is ever picked up and nothing says why. → 06 |
| ownWorkOnly | true | Whether the world arrives filtered to you: your watch tags, your pull requests. A team decision, so it belongs in the project layer. |
| agentMode | stream | stream runs a real model. raw is the mock agent — argv over a terminal — and what the example config and the tests use. |
| maxConcurrentAgents | 3 | The fleet's one size knob: the worktree pool is this plus a slack of two, read live, so raising it raises the pool with it. |
| defaultBranch | "main" | The integration branch. Not auto-detected, and a PR targeting anything else is treated as stacked. |
| heartbeatIntervalMs | 30000 | The gap between timer-driven cycles while the fleet is busy; idleHeartbeatIntervalMs (5 min) while it is not. Everything is also triggerable on demand. |
| labelPrefix | "lubbdubb" | Derives the one -watch tag. Everything is opt-in; an empty prefix turns the gate off entirely. |
| ci.checks | [] | Per-check policy: dispatch, dispatch with guidance, ignore, or escalate. Empty means every red check gets an agent. → 02 |
| agentModels | unset | Named profiles — a model and the depth it runs at — assigned per dispatch rule. Omitted, no launch carries --model. |
| agentAllowedTools | toolchain + read/skill/web | What an unattended agent may run without asking. Anything else is routed to you rather than hanging. Never set this via claudeArgs. |
| sendPrRepliesWithoutApproval | true | Send a drafted review reply straight to the thread. false is the stricter setting: every draft waits in the inbox. |
| review.enabled | false | The fleet reads a pull request of its own before a person is asked. With two or more review.modes, a triage picks how thoroughly. |
| environments | [] | Where landed work travels: a command per environment printing the commit it is at, optionally what an arrival opens and what to watch for. |
| host / port / auth | 127.0.0.1 / 4300 / on | Loopback and a bearer token. A host reachable off this machine with auth.enabled: false is refused at load. |
A first real deployment is about six lines:
{
"repoRoot": "/path/to/your/repo",
"integrations": { "sourceControl": "github", "issues": "github" },
"github": { "owner": "acme", "repo": "app" },
"userId": "your-github-login",
"agentMode": "stream",
"maxConcurrentAgents": 3,
"defaultBranch": "main"
}
Secrets are never config keys. GITHUB_TOKEN for GitHub, AZURE_DEVOPS_PAT (or a logged-in az
CLI) for Azure DevOps, LUBBDUBB_TOKEN for the cockpit — all from the environment, so
lubbdubb.config.json stays safe to paste. Agents inherit your shell's model credentials; a stray
ANTHROPIC_API_KEY silently moves the whole fleet onto API billing.
Several switches no longer exist. Planning, plan approval, the goal appraisal, the assessment, the retrospective, validation, the tool channel and the permission backstop are all unconditional. A config still naming one of them is warned about and ignored, and the warning says what replaced it. → docs/spec/02
Sharing a config with your team
lubbdubb.config.json is yours and is gitignored. A lubbdubb.project.json committed at the root of
the repository the harness works on is the team's: everyone pointed at that repo picks it up, and
each person's own file wins over it key by key. So the CI routing, the environments, the integration
branch and the tracker's state names are written once in the project, while who you are (userId),
which models you dispatch on (agentModels) and how many agents your machine runs stay local. Every
key is legal in it except repoRoot — the file is found through repoRoot, so it cannot be the
thing that sets it. → docs/spec/02
Development
npm run dev # server with reload
npm run web:dev # cockpit with HMR (proxies /api + /ws)
npm test # unit + integration tests (node:test)
npm run smoke # full end-to-end with real node-pty + a git worktree
npm run check # format, lint, typecheck ×2, knip, test — concurrently, in one shot
npm run check is the gate CI enforces. It runs its stages in parallel and reports every failure
rather than stopping at the first; a warm run costs about as long as the test suite alone.
See docs/spec/19-development.md for the test seams, the coverage and
security workflows, and the hosted GitHub Pages demo build.
Documentation
| Where | What it is |
| ------------------------------------------------------ | ------------------------------------------------------------------------------ |
| docs/operating.md | How to operate the harness: what changes about the job, and what stays yours |
| docs/operating.html | The same guide as a page to skim — open it in a browser |
| docs/workflow.md | The end-to-end workflow, its variation points, and what is narrower than drawn |
| docs/spec/ | The specification of every subsystem as it behaves today |
| docs/feature-timeline.md | What landed when, from the walking skeleton onwards |
| docs/prompt-templates/ | The rule dispatcher's built-in prompt bodies, ready to override |
| CLAUDE.md | Operating notes for agents working in this repo — the sharp edges |
License
MIT. Copyright (c) 2026 Adam Awan.

