Paddock Get started

For herdrAndroid

Your agents are waitingAnswer from your phone.

Paddock puts every coding agent running in herdr on your phone. When one stops to ask for a permission or a decision, you get an alert, read exactly what it wants, and answer. Then the work keeps moving while you are away from your desk.

It connects straight to your machine over SSH. No cloud, no account, no relay.

0:00 / 0:45
    20 sBuilt for quick check-ins: alert, read, answer, back to your day
    1 popupTo pair: scan a code, compare eight characters, approve
    0 serversYour phone talks SSH to your machine and nothing else
    Any agentClaude Code, Codex, OpenCode, Gemini and the rest of your herd

    Why Paddock

    Agents don't get tired. They get blocked.

    You start a few agents and step away. Claude Code wants to push a branch, Codex wants to add a dependency, and both sit idle until you are back at the desk. Every minute they wait is work that isn't happening.

    Paddock tells you the moment one is waiting and lets you answer from wherever you are. It isn't a cramped terminal in your pocket: it shows which agent needs you and what it is asking, and more only when you want it.

    See who needs you

    Agents waiting on you are red and finished ones are green. Working agents stay quiet, so nothing competes for your attention.

    Read before you answer

    The full command or change is on screen, never squeezed onto a button. You decide with everything in front of you.

    Know how fresh it is

    Live data says live · 3 s; a widget says as of 14:03. Nothing out of date pretends to be current.

    How it works

    Twenty seconds, start to finish.

    From the buzz in your pocket to the agent working again, without opening a laptop.

    0 sGet the alert

    An agent stops to ask, and your lock screen shows a short alert. It never includes the command or your code.

    2 sSee who needs you

    Open Paddock and the waiting agent is at the top, with its question and the exact command.

    6 sRead and decide

    Read the whole request, then tap Yes or No. The buttons wait until you have seen all of it.

    14 sBack to work

    Paddock confirms your answer was delivered and shows the agent working again.

    Yes and No on the phone are for Claude Code's permission prompts, once set up on your machine (Pro). For any other agent or question, you answer in the terminal view, a tap away from the alert.

    Features

    Everything you need away from the desk.

    Alerts on your lock screen

    A small relay on your machine notifies you through the ntfy app or UnifiedPush. Alerts say only that something needs you.

    Yes or No for Claude Code Pro

    Answer Claude Code's permission prompts from your phone, after a one-time setup on your machine. Your answer goes to the exact request Claude Code is holding; its own dialog stays open on your desktop, and whichever answers first wins.

    Send a prompt

    Type a follow-up or tap a saved snippet. Paddock checks the agent is ready right before sending, and sends it once.

    The real terminal

    Watch any pane read-only, or take control with keys for Esc, arrows, Tab and sticky Ctrl, Alt and Shift. Release it with one tap.

    What happened while you were away

    The Activity log lists what your phone saw, with times: who finished, who asked, and when a machine dropped off.

    Sessions and new agents

    Browse sessions, workspaces and tabs. Start an agent in a new tab or a fresh Git worktree Pro.

    Home-screen widgets Pro

    See how many agents need you without opening the app. Every number shows when it was read.

    Wake your machine

    Machine asleep? Send a Wake-on-LAN packet from your phone and pick up where you left off.

    Claude Code permissions

    A Yes you can trust.

    Many remote tools answer by typing y into a terminal and hoping the prompt hasn't changed. Paddock answers the permission request itself, so your Yes can only approve the command you read. This works for Claude Code's permission prompts, once you have set it up on your machine from the app.

    • Read in fullYes and No stay off until you have seen the whole request. Try it here: the --delete is below the fold.
    • No pocket tapsThe buttons wait 1.5 seconds after a request appears.
    • One request, one answerYour answer goes to that request only. If it has expired, nothing is sent. Paddock never sets "always allow".
    • Your desk still worksClaude Code's own dialog stays open on your machine. Whoever answers first wins.

    Pairing

    Pair your phone in about a minute.

    No passwords to type and no keys to copy by hand. Install the plugin once, then pair from a popup in herdr.

    1. Install the pluginOn the machine that runs herdr:herdr plugin install tuthan/herdr-plugin-paddock
    2. Open the popupRun Paddock: pair a phone from a key binding, or with herdr plugin action invoke pair --plugin tuthan.paddock. It shows a QR code.
    3. Scan and sendIn Paddock, tap Scan the code on the desktop, then Send the key. The address, user, session and your machine's fingerprint fill in for you.
    4. Compare and approveCheck the eight highlighted characters match on both screens, press a in the popup, then tap Connect.

    Other ways in: paste the key line into the popup, show it to the desktop's webcam, or run the one-line authorize command the app gives you. You can also type the address yourself or let Paddock find the machine on your network.

    On your machine
    herdr 0.9.1 or newer, an SSH server your phone can reach, and Python 3 (3.11 or newer for alerts and for Yes and No in Claude Code). Linux or macOS.
    Optional
    qrencode to draw the QR in the popup, zbar for the webcam.
    Away from home
    Use a VPN such as Tailscale or WireGuard so your phone can still reach your machine.

    Security

    No server in between. Just your phone and your machine.

    Paddock has no backend, no account and no relay. Your phone connects to your machine over SSH, on your network or through your VPN, and talks to herdr there.

    a Paddock cloudthere isn't one Paddock1 needs youkey stays here dev@desktop · herdrclaude docscodex apigemini docspi fixtures~/.ssh/authorized_keys +1 SSH · your network or your VPN your machine checked by fingerprint · your phone approved by you
    Your phone's key
    Created on the phone in its secure hardware (StrongBox or the TEE). It can't be exported, so it never leaves the phone.
    Your machine
    The pairing code carries your machine's SSH fingerprints. If anything else answers, Paddock refuses to connect.
    Your approval
    Nothing is added to your machine until you compare eight characters and press a. Reject is the default.
    What changes
    One line in authorized_keys, added once. Delete that line to unpair the phone.
    The popup
    Listens on your local network only while it's open, accepts one public key, and never runs anything it receives.
    Helper scripts
    The small scripts Paddock uses on your machine are checked by hash before every run. An edited copy is never used.
    Alerts
    Carry no command, code or agent output, only that something on your machine needs you.
    Your data
    No analytics, no tracking, no cloud. Paddock is open source under Apache-2.0.

    Questions

    FAQ

    Which agents does it work with?

    Every agent herdr runs and reports: Claude Code, Codex, OpenCode, Gemini, Copilot, Cursor, pi, amp and more. Yes and No on the phone are only for Claude Code's permission prompts. Any other agent, or any other question, you answer in the terminal view, with the same key strip.

    Do I need a server or an account?

    No. Paddock connects straight to your machine over SSH, using a key it creates on your phone. There is nothing to sign up for and nothing in between.

    Does it work when I'm away from home?

    Yes, as long as your phone can reach your machine. A VPN such as Tailscale or WireGuard is the easiest way. Pairing itself happens once, on your local network.

    Will I get alerts when the app is closed?

    Yes, through the ntfy app or a UnifiedPush distributor, fed by a small relay you run on your machine. Delivery is best effort: battery savers and the network can delay an alert. While Paddock is open, it watches by itself.

    Can my phone take over my desktop terminal?

    Only when you ask. Watching a pane is read-only. Taking control is a separate tap and you release it with another. Paddock joins at your terminal's own size and resizes it only if you ask.

    How do I set up Yes and No for Claude Code?

    Once, from Settings, Guarded answers in the app (a Pro feature). Paddock installs two small scripts after you confirm, then shows a setup command to run and the hook entry to add to Claude Code's settings; it never edits those settings itself. Start a new Claude Code session afterwards. Until it is set up, the alert still arrives and you answer in the terminal view.

    What does it cost?

    Paddock is open source. The free version covers watching, alerts, prompts, the terminal, Activity and Wake-on-LAN. Yes and No for Claude Code, starting agents, stopping or deleting sessions, widgets and switching between saved machines are Pro, planned for the Google Play version; the free builds leave them out. Anyone can build everything from source.

    Is there an iPhone version?

    It is planned. For now Paddock is Android only.

    Does the machine side run on macOS?

    Yes: turn on Remote Login so your phone has an SSH server to reach. Linux is what the plugin is tested on; macOS support is new and hasn't been run on a real Mac yet.

    Is Paddock made by herdr?

    No. Paddock is independent and is not affiliated with, endorsed by or sponsored by herdr or its authors.

    Get Paddock

    Start with the plugin.

    herdr plugin
    Available now. Pairs a phone from one popup and carries the app's control and alert scripts. Source on GitHub.
    Android app
    In testing. Not published yet. Free builds are planned for GitHub and F-Droid.
    iPhone
    Planned.