Subagents Explore Only
Settings hooks
Turns every subagent into a read-only explorer. A SubagentStart hook injects an instruction into each subagent's context (built-in, custom and plugin agents alike) before its first prompt: investigate with read-only tools, never edit, create or delete files, never run state-changing commands, and report findings back so the main agent makes every change. The main conversation is not affected. This is an instruction, not enforcement: install the security/subagent-read-only-guard hook alongside it to block writes from subagents.
npx claude-code-templates@latest --setting hooks/subagents-explore-only claude-code — subagents-explore-only
Content
JSON
{
"description": "Turns every subagent into a read-only explorer. A SubagentStart hook injects an ..."
"hooks": {
"SubagentStart": [1 item]
}
}