PluginBench
Skill
Fail
Audit score 45

everything-claude-code-harness

aradotso/trending-skills

Production-ready agent harness system for Claude Code with skills, commands, hooks, and security scanning.

What is everything-claude-code-harness?

Everything Claude Code (ECC) is a performance optimization system for AI coding agents that provides specialized subagents, reusable skills, custom slash commands, memory-persisting hooks, security scanning, and language-specific rules. Use it to enhance Claude Code, Cursor, and other AI coding environments with structured workflows, multi-agent orchestration, and persistent learning across sessions.

  • Deploy specialized subagents (planner, architect, researcher, verifier, security-auditor) for delegated task execution
  • Create and manage reusable skills modules that agents load for domain expertise, with built-in skills for search-first development, cost-aware LLM pipelines, and language-specific patterns
  • Define custom slash commands (/plan, /security-scan, /loop-start, /multi-plan, etc.) for structured workflows and multi-agent orchestration
  • Configure lifecycle hooks (SessionStart, PostEdit, PreBash, etc.) with runtime strictness profiles to enforce coding standards without editing files
  • Extract and persist instincts—session-learned patterns with confidence scores—for continuous learning across projects
  • Support language-specific rules for TypeScript, Python, Go, Swift, and common patterns with auto-detection and per-project or global configuration

How to install everything-claude-code-harness

npx skills add https://github.com/aradotso/trending-skills --skill everything-claude-code-harness
Prerequisites
  • Node.js environment with access to Claude Code, Cursor, or compatible AI coding agent
  • Git (for manual clone option) or access to plugin marketplace
  • Bash shell for running install.sh script (or manual rule installation via file copy)
Claude Code
Cursor
Windsurf
Cline

How to use everything-claude-code-harness

  1. 1.Install via plugin marketplace (/plugin marketplace add affaan-m/everything-claude-code) or manually clone the repository
  2. 2.Run ./install.sh with your language stack (e.g., ./install.sh typescript python) to install language-specific rules
  3. 3.Set package manager detection via environment variable (export CLAUDE_PACKAGE_MANAGER=pnpm) or run setup script
  4. 4.Use slash commands in your agent prompts: /plan for planning, /architect for design, /security-scan for audits, /research for investigation
  5. 5.Reference skills explicitly in prompts (e.g., 'Use the search-first skill') or trigger via /research command to activate domain expertise
  6. 6.Extract instincts after productive sessions using /instinct-import to capture learned patterns with confidence scores
  7. 7.Configure hook strictness at runtime (export ECC_HOOK_PROFILE=strict) to enforce standards without code changes

Use cases

Good for
  • Set up a multi-agent development workflow where planner, architect, and researcher agents collaborate on feature design before implementation
  • Run security audits and harness audits on code changes using /security-scan and /harness-audit commands to catch vulnerabilities early
  • Extract research-first patterns as instincts after sessions to build a personal knowledge base of proven approaches (e.g., prefer-zod-for-validation)
  • Configure package manager detection across npm, yarn, pnpm, and bun to ensure consistent dependency management in multi-environment teams
  • Orchestrate complex multi-agent workflows with /multi-plan, /multi-execute, /multi-backend, and /multi-frontend for large feature development
Who it's for
  • AI coding agent users (Claude Code, Cursor, Codex, OpenCode, Antigravity) who want structured multi-agent workflows
  • Teams building production systems and needing security scanning, code standards enforcement, and persistent learning
  • Developers working across multiple languages (TypeScript, Python, Go, Swift) who need language-specific rules and patterns
  • Engineers optimizing token spend and model routing across LLM calls
  • Developers practicing research-first development who want to capture and reuse proven patterns

everything-claude-code-harness FAQ

Do I need to install rules manually even with the plugin?

Yes. Claude Code plugins cannot auto-distribute rules. Install them via ./install.sh or copy from rules/ into your project's .claude/rules/ directory.

How does ECC detect my package manager?

ECC checks in order: CLAUDE_PACKAGE_MANAGER env var, .claude/package-manager.json, package.json packageManager field, lock file detection, global config, then first available manager.

Can I use ECC with multiple languages in one project?

Yes. Run ./install.sh with multiple language arguments (e.g., ./install.sh typescript python golang) to install rules for all your languages.

What's the difference between skills and instincts?

Skills are reusable markdown modules loaded to give agents domain expertise (built-in or custom). Instincts are patterns extracted from your sessions with confidence scores, saved for personal reuse across projects.

How do I disable specific hooks without editing files?

Set the ECC_DISABLED_HOOKS environment variable with comma-separated hook IDs (e.g., export ECC_DISABLED_HOOKS="pre:bash:tmux-reminder,post:edit:typecheck").

Full instructions (SKILL.md)

Source of truth, from aradotso/trending-skills.


name: everything-claude-code-harness description: Agent harness performance system for Claude Code and other AI coding agents — skills, instincts, memory, hooks, commands, and security scanning triggers:

  • "set up everything claude code"
  • "optimize my claude code setup"
  • "install ecc plugin for claude code"
  • "configure ai agent harness performance"
  • "add skills and commands to claude code"
  • "set up hooks and memory for claude code"
  • "improve claude code with custom rules and agents"
  • "everything claude code getting started"

Everything Claude Code (ECC) — Agent Harness Performance System

Skill by ara.so — Daily 2026 Skills collection.

Everything Claude Code (ECC) is a production-ready performance optimization system for AI agent harnesses. It provides specialized subagents, reusable skills, custom slash commands, memory-persisting hooks, security scanning, and language-specific rules — all evolved from 10+ months of daily real-world use. Works across Claude Code, Cursor, Codex, OpenCode, and Antigravity.


Installation

Option 1: Plugin Marketplace (Recommended)

# Inside Claude Code, run:
/plugin marketplace add affaan-m/everything-claude-code
/plugin install everything-claude-code@everything-claude-code

Option 2: Manual Clone

git clone https://github.com/affaan-m/everything-claude-code.git
cd everything-claude-code

# Install rules for your language stack
./install.sh typescript
# Multiple languages:
./install.sh typescript python golang swift
# Target a specific IDE:
./install.sh --target cursor typescript

Install Rules (Always Required)

Claude Code plugins cannot auto-distribute rules — install them manually via ./install.sh or copy from rules/ into your project's .claude/rules/ directory.


Directory Structure

everything-claude-code/
├── .claude-plugin/         # Plugin and marketplace manifests
│   ├── plugin.json
│   └── marketplace.json
├── agents/                 # Specialized subagents (planner, architect, etc.)
├── commands/               # Slash commands (/plan, /security-scan, etc.)
├── skills/                 # Reusable skill modules
├── hooks/                  # Lifecycle hooks (SessionStart, Stop, PostEdit, etc.)
├── rules/
│   ├── common/             # Language-agnostic rules
│   ├── typescript/
│   ├── python/
│   ├── golang/
│   └── swift/
├── scripts/                # Setup and utility scripts
└── install.sh              # Interactive installer

Key Commands

After installation, use the namespaced form (plugin install) or short form (manual install):

# Planning & architecture
/everything-claude-code:plan "Add OAuth2 login flow"
/everything-claude-code:architect "Design a multi-tenant SaaS system"

# Research-first development
/everything-claude-code:research "Best approach for rate limiting in Node.js"

# Security
/everything-claude-code:security-scan
/everything-claude-code:harness-audit

# Agent loops and orchestration
/everything-claude-code:loop-start
/everything-claude-code:loop-status
/everything-claude-code:quality-gate
/everything-claude-code:model-route

# Multi-agent workflows
/everything-claude-code:multi-plan
/everything-claude-code:multi-execute
/everything-claude-code:multi-backend
/everything-claude-code:multi-frontend

# Session and memory
/everything-claude-code:sessions
/everything-claude-code:instinct-import

# PM2 orchestration
/everything-claude-code:pm2

# Package manager setup
/everything-claude-code:setup-pm

With manual install, drop the everything-claude-code: prefix: /plan, /sessions, etc.


Hook Runtime Controls

ECC hooks fire at agent lifecycle events. Control strictness at runtime without editing files:

# Set hook strictness profile
export ECC_HOOK_PROFILE=minimal    # Least intrusive
export ECC_HOOK_PROFILE=standard   # Default
export ECC_HOOK_PROFILE=strict     # Maximum enforcement

# Disable specific hooks by ID (comma-separated)
export ECC_DISABLED_HOOKS="pre:bash:tmux-reminder,post:edit:typecheck"

Hook events covered: SessionStart, Stop, PostEdit, PreBash, PostBash, and more.


Package Manager Detection

ECC auto-detects your package manager with this priority chain:

  1. CLAUDE_PACKAGE_MANAGER environment variable
  2. .claude/package-manager.json (project-level)
  3. package.jsonpackageManager field
  4. Lock file detection (package-lock.json, yarn.lock, pnpm-lock.yaml, bun.lockb)
  5. ~/.claude/package-manager.json (global)
  6. First available manager as fallback
# Set via environment
export CLAUDE_PACKAGE_MANAGER=pnpm

# Set globally
node scripts/setup-package-manager.js --global pnpm

# Set per-project
node scripts/setup-package-manager.js --project bun

# Detect current setting
node scripts/setup-package-manager.js --detect

Skills System

Skills are markdown modules the agent loads to gain domain expertise. Install individually or in bulk.

Using a Skill

# Reference a skill explicitly in your prompt
"Use the search-first skill to find the right caching approach before implementing"

# Or trigger via slash command
/everything-claude-code:research "content hashing strategies for API responses"

Notable Built-in Skills

SkillPurpose
search-firstResearch before coding — avoids hallucinated APIs
cost-aware-llm-pipelineOptimizes token spend across model calls
content-hash-cache-patternCache invalidation via content hashing
skill-stocktakeAudits which skills are loaded and active
frontend-slidesZero-dependency HTML presentation builder
configure-eccGuided interactive ECC setup wizard
swift-actor-persistenceSwift concurrency + persistence patterns
regex-vs-llm-structured-textDecides when to use regex vs LLM parsing

Writing a Custom Skill

Create skills/my-skill.md:

---
name: my-skill
description: What this skill does
triggers:
  - "phrase that activates this skill"
---

# My Skill

## When to Use
...

## Pattern
\`\`\`typescript
// concrete example
\`\`\`

## Rules
- Rule one
- Rule two

Instincts System (Continuous Learning)

Instincts are session-extracted patterns saved for reuse. They carry confidence scores and evolve over time.

Export an Instinct

/everything-claude-code:instinct-import

Instinct File Format

---
name: prefer-zod-for-validation
confidence: 0.92
extracted_from: session-2026-02-14
---

# Action
Always use Zod for runtime schema validation in TypeScript projects.

# Evidence
Caught 3 runtime type errors that TypeScript alone missed during session.

# Examples
\`\`\`typescript
import { z } from 'zod'

const UserSchema = z.object({
  id: z.string().uuid(),
  email: z.string().email(),
  role: z.enum(['admin', 'user'])
})

type User = z.infer<typeof UserSchema>
\`\`\`

Rules Architecture

Rules enforce coding standards per language. Install only what your stack needs.

# TypeScript + Python
./install.sh typescript python

# Check what's installed
ls .claude/rules/

Rule Directory Layout

rules/
├── common/         # Applies to all languages
│   ├── research-first.md
│   ├── security-baseline.md
│   └── verification-loops.md
├── typescript/
│   ├── no-any.md
│   ├── zod-validation.md
│   └── strict-mode.md
├── python/
│   ├── type-hints.md
│   └── django-patterns.md
└── golang/
    └── error-wrapping.md

Agents (Subagent Delegation)

Agents are specialized personas the orchestrator delegates to:

# In your prompt, reference an agent explicitly
"Delegate architecture decisions to the architect agent"
"Use the planner agent to break this feature into tasks"

Available agents include: planner, architect, researcher, verifier, security-auditor, and more. Each lives in agents/<name>.md with its own system prompt, tools list, and constraints.


AgentShield Security Scanning

Run security scans directly from Claude Code:

/everything-claude-code:security-scan

This invokes the AgentShield scanner (1282 tests, 102 rules) against your codebase and surfaces:

  • Hardcoded secrets
  • Injection vulnerabilities
  • Insecure dependencies
  • Agent prompt injection patterns

Memory Persistence Hooks

ECC hooks automatically save and restore session context:

// hooks/session-start.js — loads prior context on new session
const fs = require('fs')
const path = require('path')

const memoryPath = path.join(process.env.HOME, '.claude', 'session-memory.json')

if (fs.existsSync(memoryPath)) {
  const memory = JSON.parse(fs.readFileSync(memoryPath, 'utf8'))
  console.log('Restored session context:', memory.summary)
}
// hooks/stop.js — saves session summary on exit
const summary = {
  timestamp: new Date().toISOString(),
  summary: process.env.ECC_SESSION_SUMMARY || '',
  skills_used: (process.env.ECC_SKILLS_USED || '').split(',')
}

fs.writeFileSync(memoryPath, JSON.stringify(summary, null, 2))

Cross-Platform Support

PlatformSupport
Claude CodeFull (agents, commands, skills, hooks, rules)
CursorFull (via --target cursor installer flag)
OpenCodeFull (plugin system, 20+ hook event types, 3 native tools)
Codex CLIFull (codex.md generated via /codex-setup)
Codex AppFull (AGENTS.md-based)
AntigravityFull (via --target antigravity installer flag)

Common Patterns

Research-First Development

"Before implementing the payment webhook handler, use the search-first skill to 
verify current Stripe webhook verification best practices."

Token Optimization

# Route to cheaper model for simple tasks
/everything-claude-code:model-route "Write a unit test for this pure function"

# Use background processes for long analysis
/everything-claude-code:harness-audit

Parallelization with Git Worktrees

# Create isolated worktrees for parallel agent tasks
git worktree add ../feature-auth -b feature/auth
git worktree add ../feature-payments -b feature/payments

# Each Claude Code session operates in its own worktree
# Merge when both complete

Verification Loop

/everything-claude-code:loop-start    # Begin tracked loop
# ... agent does work ...
/everything-claude-code:loop-status   # Check progress
/everything-claude-code:quality-gate  # Enforce pass criteria before merge

Troubleshooting

Plugin commands not found after install

/plugin list everything-claude-code@everything-claude-code
# If empty, re-run: /plugin install everything-claude-code@everything-claude-code

Rules not applied

# Rules require manual install — plugin system cannot distribute them
cd everything-claude-code && ./install.sh typescript
# Verify:
ls ~/.claude/rules/   # or .claude/rules/ in project root

Hooks not firing

# Check profile setting
echo $ECC_HOOK_PROFILE
# Check disabled list
echo $ECC_DISABLED_HOOKS
# Reset to defaults
unset ECC_HOOK_PROFILE
unset ECC_DISABLED_HOOKS

Instinct import drops content Ensure you're on v1.4.1+. Earlier versions had a bug where parse_instinct_file() silently dropped Action/Evidence/Examples sections. Pull latest and re-run.

Wrong package manager used

node scripts/setup-package-manager.js --detect
export CLAUDE_PACKAGE_MANAGER=pnpm   # Override explicitly

Resources