Agent skill

Ecc Tools Cost Audit

by affaan-m in affaan-m/ECC

证据优先的ECC工具燃烧和计费审计工作流。用于调查ECC工具仓库中的失控PR创建、配额绕过、高级模型泄漏、重复作业或GitHub App成本激增。

MITAuto-check passedBackend & APIs

Install Ecc Tools Cost Audit

skills CLI
$ npx skills add affaan-m/ECC --skill ecc-tools-cost-audit -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install affaan-m/ECC ecc-tools-cost-audit --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/affaan-m/ECC.git skills-src && mkdir -p .claude/skills && cp -r skills-src/docs/zh-CN/skills/ecc-tools-cost-audit .claude/skills/ecc-tools-cost-audit && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
ecc-tools-cost-audit
GitHub stars
276k
Token cost
~709 tokens
SKILL.md length
207 words
Files
1
Skills in repo
683
Repo updated
First seen
Licence
MIT

At a glance

证据优先的ECC工具燃烧和计费审计工作流。用于调查ECC工具仓库中的失控PR创建、配额绕过、高级模型泄漏、重复作业或GitHub App成本激增。

  • Works in 11 steps: 冻结仓库范围 → 在理论化之前追踪入口 → 追踪 Worker 和副作用 → …
  • Backend & APIs work in your project
  • SKILL.md covers 技能栈, 使用时机, 范围约束 and 工作流, plus 3 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Ecc Tools Cost Audit is an agent skill from affaan-m/ECC. 证据优先的ECC工具燃烧和计费审计工作流。用于调查ECC工具仓库中的失控PR创建、配额绕过、高级模型泄漏、重复作业或GitHub App成本激增。

Its SKILL.md is about 710 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs. It works with GitHub. The repository describes itself as: The agent harness performance optimization system. Skills, instincts, memory, security, and research-first development for Claude Code, Codex, Opencode, Cursor and beyond. The licence is MIT.

When your agent uses it

  • Backend & APIs work in your project

Example prompts

  • “/ecc-tools-cost-audit”

Workflow steps

11 steps, taken from the step headings in SKILL.md.

  1. 冻结仓库范围
  2. 在理论化之前追踪入口
  3. 追踪 Worker 和副作用
  4. 审计高信号消耗路径
  5. 按消耗顺序修复
  6. 以最小的验证步骤进行验证
  7. 所有触发器使用同一队列类型
  8. 入队后预留使用量
  9. 免费层级走付费路径
  10. 应用生成的分支重新进入 Webhook
  11. 在持久化安全之前执行昂贵操作

What it can do on your machine

Read from SKILL.md and the folder at commit 4eb71d9. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Ecc Tools Cost Audit loads about 709 tokens when it runs. Until then it costs about 24 tokens; SKILL.md has 207 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~24
When it runs · the whole SKILL.md, loaded when a task matches
~709

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from affaan-m/ECC at commit 4eb71d9, republished under its MIT licence (© affaan-m). 207 words, ~709 tokens.

Download SKILL.mdSave it as .claude/skills/ecc-tools-cost-audit/SKILL.md (or your agent's skills folder).
name
ecc-tools-cost-audit
description
证据优先的ECC工具燃烧和计费审计工作流。用于调查ECC工具仓库中的失控PR创建、配额绕过、高级模型泄漏、重复作业或GitHub App成本激增。
origin
ECC

ECC 工具成本审计

当用户怀疑 ECC Tools GitHub App 正在消耗成本、过度创建 PR、绕过使用限制,或将免费用户引导至付费分析路径时,使用此技能。

这是一个针对兄弟仓库 ECC-Tools 的聚焦操作者工作流。它不是通用的计费技能,也不是仓库范围的代码审查。

技能栈

在相关情况下,将这些 ECC 原生技能拉入工作流:

  • autonomous-loops 用于跨 webhook、队列、计费和重试的有界多步骤审计
  • agentic-engineering 用于将请求路径追踪为离散的、可证明的单元
  • customer-billing-ops 当需要清晰分离仓库行为和客户影响计算时
  • search-first 在发明辅助函数或重新实现仓库本地工具之前
  • security-review 当涉及认证、使用限制、授权或密钥时
  • verification-loop 用于证明重试安全性和精确的修复后状态
  • tdd-workflow 当修复需要在 worker、路由器或计费路径中添加回归测试覆盖时

使用时机

  • 用户提及 ECC Tools 消耗率、PR 递归、过度创建的 PR、使用限制绕过或付费模型泄漏
  • 任务位于兄弟仓库 ECC-Tools 中,并依赖于 webhook 处理器、队列 worker、使用预留、PR 创建逻辑或付费网关强制执行
  • 客户报告称应用创建了过多 PR、计费错误,或分析了代码但未产生可用结果

范围约束

  • 在兄弟仓库 ECC-Tools 中工作,而非 ECC
  • 除非用户明确要求修复,否则以只读方式开始
  • 在追踪分析消耗时,不要修改无关的计费、结账或 UI 流程
  • 将应用生成的分支和应用生成的 PR 视为红旗递归路径,除非被证明并非如此
  • 明确区分三件事:
    • 仓库侧消耗的根本原因
    • 面向客户的计费影响
    • 需要纳入待办事项跟踪的产品或授权缺口

工作流

1. 冻结仓库范围
  • 切换到兄弟仓库 ECC-Tools
  • 首先检查分支和本地差异
  • 确定审计的具体范围:
    • webhook 路由器
    • 队列生产者
    • 队列消费者
    • PR 创建路径
    • 使用预留 / 计费路径
    • 模型路由路径
2. 在理论化之前追踪入口
  • 首先检查 src/index.* 或主入口点
  • 在提出修复建议之前,映射每个入队路径
  • 确认哪些 GitHub 事件共享一个队列类型
  • 确认 push、pull_request、synchronize、comment 或手动重新运行事件是否会汇聚到同一个昂贵的路径上
3. 追踪 Worker 和副作用
  • 检查处理分析的队列消费者或定时 worker
  • 确认排队的分析是否总是以以下方式结束:
    • PR 创建
    • 分支创建
    • 文件更新
    • 付费模型调用
    • 使用量增加
  • 如果分析可能消耗令牌,然后在输出持久化之前失败,则将其归类为“消耗但输出中断”
4. 审计高信号消耗路径
PR 倍增
  • 检查 PR 辅助函数和分支命名
  • 检查去重、synchronize 事件处理以及现有 PR 的复用
  • 如果应用生成的分支可以重新进入分析,则将其视为优先级为 0 的递归风险
配额绕过
  • 检查配额检查的位置与使用量预留或增加的位置
  • 如果在入队前检查配额,但仅在 worker 内部计费使用量,则将并发的前门通过视为真正的竞态条件
付费模型泄漏
  • 检查模型选择、层级分支和提供商路由
  • 验证当存在付费密钥时,免费或受限用户是否仍能访问付费分析器
重试消耗
  • 检查重试循环、重复的队列任务和确定性失败重试
  • 如果相同的非临时性错误可以反复消耗分析资源,则先修复此问题,再进行质量改进
5. 按消耗顺序修复

如果用户要求代码更改,请按以下顺序优先修复:

  1. 阻止自动 PR 倍增
  2. 阻止配额绕过
  3. 阻止付费模型泄漏
  4. 阻止重复任务扇出和无意义的重试
  5. 弥补重试/更新安全缺口

除非同一根本原因明显跨越多个文件,否则将修复范围限制在一到三个直接修复。

6. 以最小的验证步骤进行验证
  • 仅重新运行覆盖已更改路径的目标测试或集成片段
  • 验证消耗路径现在是否:
    • 被阻止
    • 已去重
    • 降级为更便宜的分析
    • 或提前被拒绝
  • 准确说明最终状态:
    • 本地已更改
    • 本地已验证
    • 已推送
    • 已部署
    • 仍被阻止

高信号故障模式

1. 所有触发器使用同一队列类型

如果推送、PR 同步和手动审计都入队相同的任务,并且 worker 总是创建 PR,那么分析就等于 PR 垃圾信息。

2. 入队后预留使用量

如果在入口处检查使用量,但仅在 worker 中增加,则并发请求可能全部通过关卡并超出配额。

3. 免费层级走付费路径

如果存在密钥时,免费的排队任务仍能路由到 Anthropic 或其他付费提供商,即使客户从未看到付费结果,这也是真实的支出泄漏。

4. 应用生成的分支重新进入 Webhook

如果 pull_request.synchronize、分支推送或评论触发的运行在应用拥有的分支上触发,则应用可以递归分析自己的输出。

5. 在持久化安全之前执行昂贵操作

如果系统可能消耗令牌,然后在 PR 创建、文件更新或分支冲突时失败,则是在消耗成本而不产生价值。

陷阱

  • 不要一开始就广泛浏览仓库;先确定 webhook -> 队列 -> worker 的路径
  • 不要将客户计费推断与基于代码的产品事实混为一谈
  • 在最高消耗路径被控制之前,不要修复价值较低的质量问题
  • 在重新运行狭窄的验证步骤之前,不要声称消耗问题已修复
  • 除非用户要求,否则不要推送或部署
  • 如果无关的仓库本地更改正在进行中,不要触碰它们

验证

  • 根本原因需引用确切的文件路径和代码区域
  • 修复按消耗影响排序,而非代码整洁度
  • 需指明验证命令的名称
  • 最终状态需区分本地更改、验证、推送和部署

© affaan-m, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in docs/zh-CN/skills/ecc-tools-cost-audit of affaan-m/ECC.

Open the folder on GitHubat commit 4eb71d9

Compare with similar skills

Ecc Tools Cost Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Ecc Tools Cost Audit compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Ecc Tools Cost Audit this skillaffaan-m/ECC276k—~709Automated safety check: PassMIT
Summarize Activityalpinejs/alpine32k—~1.6kAutomated safety check: NotesMIT
Plugin Release CheckVoidenHQ/voiden1.8k—~857Automated safety check: PassApache-2.0
Repo2skillzhangyanxs/repo2skill246—~3.6kAutomated safety check: PassNone
Ccb DiagnoseSeemSeam/claude_codex_bridge3.6k—~2.1kAutomated safety check: PassCustom licence
Cuga GitHub Issuescuga-project/cuga-agent896—~1.2kAutomated safety check: PassCustom licence

Similar skills

  • Summarize Activity

    alpinejs/alpine

    Summarize recent GitHub activity — discussions, PRs, issues, events, traffic — into an actionable report so you can stay on top of the project without reading everything.

    32k GitHub stars~1.6k tokensUpdated 6 days ago
    Backend & APIsAuto-check: notes
  • Plugin Release Check

    VoidenHQ/voiden

    A skill your agent uses whenever a plugin under plugins/<name is updated/pushed, or whenever asked to write a changelog/release for the app or a plugin.

    1.8k GitHub stars~857 tokensUpdated 2 days ago
    Backend & APIsAuto-check passed
  • Repo2skill

    zhangyanxs/repo2skill

    Convert GitHub/GitLab/Gitee repositories into comprehensive OpenCode Skills using embedded LLM calls with multiple mirrors and rate limit handling

    246 GitHub stars~3.6k tokensUpdated 7 mo ago
    Backend & APIsAuto-check passed
  • Ccb Diagnose

    SeemSeam/claude_codex_bridge

    Diagnose a named CCB agent by combining authoritative runtime and job lineage with deep read-only pane inspection, apply bounded recovery when evidence supports it, verify the result, and request…

    3.6k GitHub stars~2.1k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Cuga GitHub Issues

    cuga-project/cuga-agent

    Create GitHub issues for cuga-agent (bugs, features, epics, designs, and related work) against origin using gh, with epic → feature → issue hierarchy and GraphQL sub-issue linking.

    896 GitHub stars~1.2k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Jwx Guide V4

    lestrrat-go/jwx

    Guide for developing Go applications with github.com/lestrrat-go/jwx v4 — parse/sign JWTs, work with JWS/JWE/JWK, pick algorithms, and avoid the common footguns.

    2.4k GitHub stars~5.7k tokensUpdated 2 days ago
    Backend & APIsAuto-check passed

More from affaan-m/ECC

All 682 skills in this repo
  • Skill Stocktake

    affaan-m/ECC

    Audits your installed Claude skills and commands for quality, with a quick mode for recently changed skills and a full mode that evaluates all of them through subagents.

    277k GitHub starsUsed in 5 repos~3.1k tokens
    Auto-check passed
  • Ingests, indexes, searches, edits and monitors video, audio and live streams through the VideoDB Python SDK, returning stream links, clips and timestamps.

    277k GitHub starsUsed in 3 repos~3.5k tokens
    Auto-check: notes
  • Docs Governance

    affaan-m/ECC

    Route broad documentation-governance requests to existing ECC skills and run an opt-in, read-only audit of mapped documentation roles, links, ADR indexes, and evidence references.

    277k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Rules Distillation

    affaan-m/ECC

    Scans installed skills for principles that recur across them and proposes rule-file changes: append, revise, add a section, create a file or leave as covered.

    277k GitHub starsUsed in 2 repos~2.3k tokens
    Auto-check passed
  • Builds DRAFT counterparty agreements from one markdown template and a small JSON spec per party, with clauses picked by the party's role.

    277k GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Set an ECC-specific frontend design direction for production UI work.

    277k GitHub starsUsed in 1 repo~2.2k tokens
    Auto-check passed

Works with

Categories

Questions about Ecc Tools Cost Audit

What does Ecc Tools Cost Audit do?

证据优先的ECC工具燃烧和计费审计工作流。用于调查ECC工具仓库中的失控PR创建、配额绕过、高级模型泄漏、重复作业或GitHub App成本激增。. Ecc Tools Cost Audit is an agent skill from affaan-m/ECC.

When should I use Ecc Tools Cost Audit?

Ecc Tools Cost Audit fits situations like: backend & APIs work in your project.

How do I install Ecc Tools Cost Audit in Claude Code?

Run `npx skills add affaan-m/ECC --skill ecc-tools-cost-audit -a claude-code`. Or copy the skill folder (docs/zh-CN/skills/ecc-tools-cost-audit in affaan-m/ECC) into .claude/skills/ecc-tools-cost-audit in your project. Claude Code loads it when a task matches its description.

How do I install Ecc Tools Cost Audit in Codex?

Run `npx skills add affaan-m/ECC --skill ecc-tools-cost-audit -a codex`. Or copy the skill folder (docs/zh-CN/skills/ecc-tools-cost-audit in affaan-m/ECC) into .agents/skills/ecc-tools-cost-audit in your project. Codex loads it when a task matches its description.

Can I use Ecc Tools Cost Audit in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add affaan-m/ECC --skill ecc-tools-cost-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ecc-tools-cost-audit, .gemini/skills/ecc-tools-cost-audit, .github/skills/ecc-tools-cost-audit and .opencode/skills/ecc-tools-cost-audit in your project.

What does Ecc Tools Cost Audit need to run?

SKILL.md names no scripts, command-line tools or credentials: Ecc Tools Cost Audit is instructions for the agent only.

Does Ecc Tools Cost Audit access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Ecc Tools Cost Audit safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Ecc Tools Cost Audit use?

Ecc Tools Cost Audit is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Ecc Tools Cost Audit use?

About 709 tokens (SKILL.md is roughly 2.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Ecc Tools Cost Audit?

Skills that share tags, products or a category with Ecc Tools Cost Audit: Summarize Activity (alpinejs/alpine, 32k stars), Plugin Release Check (VoidenHQ/voiden, 1.8k stars), Repo2skill (zhangyanxs/repo2skill, 246 stars) and Ccb Diagnose (SeemSeam/claude_codex_bridge, 3.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Ecc Tools Cost Audit?

affaan-m (a GitHub user) maintains it in affaan-m/ECC, which has 276,111 GitHub stars. The repository holds 683 skills in this directory. The repository was last updated on October 10, 2026.

Source: affaan-m/ECC on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.