这是一份静态演示。 数据是一轮完全虚构的采样,地址取自 RFC 5737 文档保留段,不是任何人的真实网络。 面板可以点、可以切、可以排序,但开关是禁用的 —— 这里没有服务端, 一个探测请求也发不出去。(页面本身会向 Google Fonts 取一次字体, 那是它唯一的外发请求,被拦掉也照样能读。) 想看真实数据,把仓库 clone 下来跑 python3 -m cem serve --open。 ← 回文档首页
claude-egress-monitor · 本机运行 · 数据不外发 claude-egress-monitor · runs locally · nothing leaves this machine

总览

实时监控Live monitoring 打开后每 30 秒探测一轮 Probes every 30s once on
已采样轮数Rounds 0
在测域名Domains probed —
出口地区数Exit regions —
出口变更Exit changes —

下面三张卡回答的是「如果这个入口现在发流量,会从哪出去」—— 工具用和该入口相同的代理配置自己发了一次探测。所以进程没在跑,卡片照样有值。想看「它此刻正连着谁」,去左边的「实时连接」,那里才是真实观测。 These three cards answer “where would this entry point exit if it sent traffic now” — the tool probes using that entry point's own proxy config. A card has a value even when the process is not running. For “what is it connected to right now”, see Live sockets — that one is observation.

还没有数据No data yet 监控默认是关的 —— 打开右上角开关,或者按「立刻采一轮」。
这个工具在你没允许之前,一个探测请求都不会发。
Monitoring is off by default. Flip the switch or press “Probe now”.
Nothing is probed until you say so.

本轮结论What this round found

0

采过一轮之后,这里会列出需要你处理的事:某个入口落在受限地区、两个入口出口不一致、某个域名没被分流规则覆盖到。 After a round, this card lists what needs action: an entry point landing in a restricted region, two entry points exiting different countries, a domain your routing rules never matched.

为什么这张卡是暗的:一屏里只留一个视线落点,而它应该落在「要动手的事」上,不是落在汇总数字上。
结论是算出来的,不是复述数字:出口国家在入口之间不一致、某条路径下的域名没被规则覆盖、连接的真实目的地拿不到 —— 这三类都会在这里出现。
One dark card per screen, and it belongs on the thing you must act on — not on a summary you can already see.
These lines are computed, not restated: exits disagreeing across entry points, domains a routing rule never matched, destinations we cannot see.

遥测发往哪里Where telemetry goes

只做 TLS 握手量延迟,不发任何数据 —— 往别人的遥测 intake 写东西是污染它的数据。 TLS handshake only, no payload — writing into someone's telemetry intake pollutes their data.

Claude Code 里硬编码了 Datadog US5 站点的日志 intake,桌面端和网页端另外带一套浏览器端 SDK,错误上报走 Sentry 的 US 区。采一轮就能看到各自的延迟。 Claude Code hardcodes the Datadog US5 logs intake; desktop and web add a browser SDK, and crash reports go to Sentry's US region. Run a round to see each one's latency.

US5 是 Datadog 的一个站点代号,落地在美国的 Google Cloud 上(实测解析到 GCP 的地址段)。关闭办法见 docs/02-telemetry.md。 US5 is a Datadog site code; it resolves into Google Cloud address space in the US. How to turn it off: docs/02-telemetry.md.

出口变更Exit changes

只在变了的时候记一条Logged only on change

出口 IP 或地区变化时才在这里留一行。每轮都记等于把一屏日志变成噪声,而你关心的只有「什么时候变的」。 A line appears only when the exit IP or region changes. Logging every round would be noise; the question is always “when did it change”.

本机的路径Paths on this machine

CLI 只认 HTTPS_PROXY 环境变量,桌面端和浏览器认 macOS 系统代理。两份配置不同,出口就可以不同 —— 这是这个工具存在的理由。 The CLI reads only HTTPS_PROXY; desktop and browsers read the macOS system proxy. Two different configs mean two different exits — which is why this tool exists.