Detector libraryRepeated restarts

Repeated restarts

Back online. Then back again.

Spot a session that keeps starting over.

See the problem. Understand the finding.

English narration with captions.

How it gets overlooked

The agent comes back online, so everything looks fine. Then it starts over again. Repeated restarts can hide behind a process that appears healthy whenever you happen to look at it.

An unfinished task survives in your to do list while the runtime keeps relaunching. Without the sequence of session events, each restart looks like a fresh beginning. Together, they suggest a reliability problem that deserves investigation.

What ClawMetry detects

ClawMetry counts recorded session starts and restarts within a bounded window. When enough accumulate, it raises a repeated restart finding. The evidence includes the count and whether the comparison used timestamps or the event window.

The difference that changes the finding

Triggering example

2 starts in one minute

Warning finding

Quiet comparison

A single start

No finding for this detector.

The checked example records two starts one minute apart and produces a warning. A single start stays quiet. The default restart window is fifteen minutes, and the finding reports the threshold used for that evaluation.

Inspect the detector result
{
  "kind": "crashed",
  "severity": "warning",
  "evidence": {
    "restarts": 2,
    "threshold": 2,
    "window_sec": 900,
    "threshold_source": "static",
    "observed": "session.started/restarted events counted by timestamps",
    "span_sec": 60
  }
}
Download inputs and complete results (JSON)
How the example was checked

These examples evaluate the published detector with authored event data or disposable configuration files. The videos illustrate those behaviors. They are not recordings of live agents or the product interface. No command in the examples was executed.

The result establishes behavior for these inputs. It does not establish runtime ingestion, prevention or a real compromise. Inspect the pinned source contract.

What to check next

Check the runtime logs for exit reasons and startup errors. Look at resource pressure and the last action before the restart. Once the cause is addressed, confirm that the agent stays running and returns to the original task.

  1. Read runtime exit logs
  2. Inspect the preceding action
  3. Confirm the session stays up

What this signal establishes

Repeated start events are a reliability signal. They do not prove a crash cause, and an intentional restart can contribute to the count.

Keep the important moments visible.

Follow agent activity, inspect findings and decide what needs your attention.