# Tokenoscopy > Flight recorder and spend control for AI coding agents. Records every Claude Code session — prompts, model calls, tool calls, file edits and dollars — into a replayable timeline, attributes spend, and enforces budgets with a PreToolUse guard that fails open. Supported: Claude Code. Next: Codex CLI, Cursor, Gemini CLI. ## Install ```sh npm i -g tokenoscopy && tokenoscopy init ``` Early-access teams get a key for this on day one. Signups: https://tokenoscopy.com/#access ## Runtime contract - 1,500ms guard ceiling: The one hook in your critical path answers inside this or the tool call proceeds. Down, slow, or wrong — it allows. (https://tokenoscopy.com/docs#guard) - 15s allow cache: An allow is reused locally, so most tool calls never touch the network. Deny and ask are never cached. (https://tokenoscopy.com/docs#performance) - 0 proxies in your path: No gateway, no SDK wrapper. Live hooks are async — Claude Code never waits on them. Your traffic never routes through us. (https://tokenoscopy.com/docs#install) - On-device redaction: Keys, tokens, JWTs, private keys and emails are scrubbed before upload, then again server-side. (https://tokenoscopy.com/docs#security) ## Pricing - Trial: every workspace starts with 14 days of Solo, no card. - Solo: $29/month, one developer. Every budget enforced, email & Slack alerts, 90-day replay. - Team: custom pricing, every developer — attribution per repo/dev/model, MDM rollout, SSO, audit export, priority support. - After the trial, unsubscribed workspaces are read-only: still recording, 7 days of replays, nothing blocked or alerted. Pricing never scales with spend. ## FAQ ### Do you proxy my model traffic? No. Tokenoscopy rides Claude Code's own hooks and transcripts. Requests go straight from the agent to the model provider; we read what happened, from the machine it happened on. (https://tokenoscopy.com/docs#install) ### What leaves my machine? Session events and transcripts, redacted on your machine before upload — credential shapes, JWTs, private-key blocks, Authorization headers, connection-string passwords, secret assignments and emails in content. The server runs the same scrub again. Replays include the paths of files the agent read or edited, plus branch drift counted from local git refs — no GitHub access. (https://tokenoscopy.com/docs#security) ### What happens if Tokenoscopy is down? Nothing you'd notice. The budget guard has a hard 1,500ms timeout and every failure path allows the tool call — outage, network flake, rate limit, bad response. Only an explicit over-budget verdict blocks. We are never the reason an agent stopped. (https://tokenoscopy.com/docs#guard) ### Is that dollar figure money? Depends on the lane, and we always say which. On an API key it's real money, estimated at list price. On a Pro/Max subscription it's what the work would have cost at API rates — nobody is invoiced; what runs out is your usage limit. The two are never added together. (https://tokenoscopy.com/docs#lanes) ### I sign in with OAuth — doesn't that mean subscription? Not necessarily. Claude Code also signs into Console accounts that bill per token. We read the plan your Claude login reports instead of assuming, and a machine we can't classify is labelled unclassified rather than guessed. (https://tokenoscopy.com/docs#lanes) ### Which agents are supported? Claude Code today, on laptops and in CI. Codex CLI, Cursor and Gemini CLI are next. (https://tokenoscopy.com/docs#support) ### Can I roll it out without touching every laptop? Yes. Render the hook block once with `init --print` and ship it through managed settings (MDM). Managed policy can't be disabled by users. CI checkouts use `init --project` with the key in the environment. (https://tokenoscopy.com/docs#fleet) ### How is it priced? Solo is $29 a month for one developer. Team is custom pricing that covers everyone. Every workspace starts with a 14-day Solo trial, no card; after that it's read-only until you subscribe — still recording, with 7 days of replays, but nothing blocked or alerted. Never priced on your spend. (https://tokenoscopy.com/docs#seats) ## Docs - [Docs](https://tokenoscopy.com/docs): install, lanes, guard, privacy, fleet rollout, OTLP - [Changelog](https://tokenoscopy.com/changelog): what shipped, newest first (latest: 2026-10-01)