Agent skill

Plankton Code Quality

by affaan-m in affaan-m/ECC

Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks.

MITAuto-check passedDevelopment

Install Plankton Code Quality

skills CLI
$ npx skills add affaan-m/ECC --skill plankton-code-quality -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install affaan-m/ECC plankton-code-quality --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/affaan-m/ECC.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/plankton-code-quality .claude/skills/plankton-code-quality && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
plankton-code-quality
GitHub stars
274k
Used in
5 other repos
Token cost
~3.2k tokens
SKILL.md length
1,424 words
Files
1
Skills in repo
657
Repo updated
First seen
Licence
MIT

At a glance

Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks.

  • Works in 3 steps: PreToolUse hook —… → Stop hook — stop_config_guardian.sh… → Protected files list — .ruff.toml,…
  • Setting up write-time formatting
  • SKILL.md covers When to Use, How It Works, Setup and Pairing with ECC, plus 5 more sections
  • Calls npm, brew and uv

What it does

Plankton Code Quality is an agent skill from affaan-m/ECC. Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks. Use when setting up write-time formatting, linting, or auto-fix hooks on file edits.

Its SKILL.md is about 3.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Code quality and Linting and formatting. It works with npm. The repository describes itself as: The agent harness performance optimization system. Skills, instincts, memory, security, and research-first development for Claude Code, Codex, Opencode, Cursor and beyond. The licence is MIT.

When your agent uses it

  • Setting up write-time formatting
  • Auto-fix hooks on file edits

Example prompts

  • “/plankton-code-quality”

Requirements

  • Python 3

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. PreToolUse hook — protect_linter_configs.sh blocks edits to all linter configs before they happen
  2. Stop hook — stop_config_guardian.sh detects config changes via git diff at session end
  3. Protected files list — .ruff.toml, biome.json, .shellcheckrc, .yamllint, .hadolint.yaml, and more

What it can do on your machine

Read from SKILL.md and the folder at commit ef648e0. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • brew
    • uv
    • claude
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • oxc.rs
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Plankton Code Quality loads about 3.2k tokens when it runs. Until then it costs about 60 tokens; SKILL.md has 1,424 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~60
When it runs · the whole SKILL.md, loaded when a task matches
~3.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from affaan-m/ECC at commit ef648e0, republished under its MIT licence (© affaan-m). 1,424 words, ~3,197 tokens.

Download SKILL.mdSave it as .claude/skills/plankton-code-quality/SKILL.md (or your agent's skills folder).
name
plankton-code-quality
description
Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks. Use when setting up write-time formatting, linting, or auto-fix hooks on file edits.
metadata.origin
community

Plankton Code Quality Skill

Integration reference for Plankton (credit: @alxfazio), a write-time code quality enforcement system for Claude Code. Plankton runs formatters and linters on every file edit via PostToolUse hooks, then spawns Claude subprocesses to fix violations the agent didn't catch.

When to Use

  • You want automatic formatting and linting on every file edit (not just at commit time)
  • You need defense against agents modifying linter configs to pass instead of fixing code
  • You want tiered model routing for fixes (Haiku for simple style, Sonnet for logic, Opus for types)
  • You work with multiple languages (Python, TypeScript, Shell, YAML, JSON, TOML, Markdown, Dockerfile)

How It Works

Three-Phase Architecture

Every time Claude Code edits or writes a file, Plankton's multi_linter.sh PostToolUse hook runs:

Phase 1: Auto-Format (Silent)
├─ Runs formatters (ruff format, biome, shfmt, taplo, markdownlint)
├─ Fixes 40-50% of issues silently
└─ No output to main agent

Phase 2: Collect Violations (JSON)
├─ Runs linters and collects unfixable violations
├─ Returns structured JSON: {line, column, code, message, linter}
└─ Still no output to main agent

Phase 3: Delegate + Verify
├─ Spawns claude -p subprocess with violations JSON
├─ Routes to model tier based on violation complexity:
│   ├─ Haiku: formatting, imports, style (E/W/F codes) — 120s timeout
│   ├─ Sonnet: complexity, refactoring (C901, PLR codes, oxlint complexity) — 300s timeout
│   └─ Opus: type system, deep reasoning (unresolved-attribute) — 600s timeout
├─ Re-runs Phase 1+2 to verify fixes
└─ Exit 0 if clean, Exit 2 if violations remain (reported to main agent)
What the Main Agent Sees
ScenarioAgent seesHook exit
No violationsNothing0
All fixed by subprocessNothing0
Violations remain after subprocess[hook] N violation(s) remain2
Advisory (duplicates, old tooling)[hook:advisory] ...0

The main agent only sees issues the subprocess couldn't fix. Most quality problems are resolved transparently.

Config Protection (Defense Against Rule-Gaming)

LLMs will modify .ruff.toml or biome.json to disable rules rather than fix code. Plankton blocks this with three layers:

  1. PreToolUse hook — protect_linter_configs.sh blocks edits to all linter configs before they happen
  2. Stop hook — stop_config_guardian.sh detects config changes via git diff at session end
  3. Protected files list — .ruff.toml, biome.json, .shellcheckrc, .yamllint, .hadolint.yaml, and more
Package Manager Enforcement

A PreToolUse hook on Bash blocks legacy package managers:

  • pip, pip3, poetry, pipenv → Blocked (use uv)
  • npm, yarn, pnpm → Blocked (use bun)
  • Allowed exceptions: npm audit, npm view, npm publish

Setup

Quick Start

Note: Plankton requires manual installation from its repository. Review the code before installing.

bash
# Install core dependencies
brew install jaq ruff uv

# Install Python linters
uv sync --all-extras

# Start Claude Code — hooks activate automatically
claude

No install command, no plugin config. The hooks in .claude/settings.json are picked up automatically when you run Claude Code in the Plankton directory.

Per-Project Integration

To use Plankton hooks in your own project:

  1. Copy .claude/hooks/ directory to your project
  2. Copy .claude/settings.json hook configuration
  3. Copy linter config files (.ruff.toml, biome.json, etc.)
  4. Install the linters for your languages
Language-Specific Dependencies
LanguageRequiredOptional
Pythonruff, uvty (types), vulture (dead code), bandit (security)
TypeScript/JSbiome; oxlint (>= 1.37.0) when using complexitysemgrep, knip (dead exports)
Shellshellcheck, shfmt—
YAMLyamllint—
Markdownmarkdownlint-cli2—
Dockerfilehadolint (>= 2.12.0)—
TOMLtaplo—
JSONjaq—

Pairing with ECC

Complementary, Not Overlapping
ConcernECCPlankton
Code quality enforcementPostToolUse hooks (Prettier, tsc)PostToolUse hooks (20+ linters + subprocess fixes)
Security scanningAgentShield, security-reviewer agentBandit (Python), Semgrep (TypeScript)
Config protection—PreToolUse blocks + Stop hook detection
Package managerDetection + setupEnforcement (blocks legacy PMs)
CI integration—Pre-commit hooks for git
Model routingManual (/model opus)Automatic (violation complexity → tier)
  1. Install ECC as your plugin (agents, skills, commands, rules)
  2. Add Plankton hooks for write-time quality enforcement
  3. Use AgentShield for security audits
  4. Use ECC's verification-loop as a final gate before PRs
Avoiding Hook Conflicts

If running both ECC and Plankton hooks:

  • ECC's Prettier hook and Plankton's biome formatter may conflict on JS/TS files
  • Resolution: disable ECC's Prettier PostToolUse hook when using Plankton (Plankton's biome is more comprehensive)
  • Both can coexist on different file types (ECC handles what Plankton doesn't cover)

Configuration Reference

Plankton's .claude/hooks/config.json controls all behavior:

json
{
  "languages": {
    "python": true,
    "shell": true,
    "yaml": true,
    "json": true,
    "toml": true,
    "dockerfile": true,
    "markdown": true,
    "typescript": {
      "enabled": true,
      "js_runtime": "auto",
      "biome_nursery": "warn",
      "semgrep": true
    }
  },
  "phases": {
    "auto_format": true,
    "subprocess_delegation": true
  },
  "subprocess": {
    "tiers": {
      "haiku":  { "timeout": 120, "max_turns": 10 },
      "sonnet": { "timeout": 300, "max_turns": 10 },
      "opus":   { "timeout": 600, "max_turns": 15 }
    },
    "volume_threshold": 5
  }
}

Key settings:

  • Disable languages you don't use to speed up hooks
  • volume_threshold — violations > this count auto-escalate to a higher model tier
  • subprocess_delegation: false — skip Phase 3 entirely (just report violations)

Environment Overrides

VariablePurpose
HOOK_SKIP_SUBPROCESS=1Skip Phase 3, report violations directly
HOOK_SUBPROCESS_TIMEOUT=NOverride tier timeout
HOOK_DEBUG_MODEL=1Log model selection decisions
HOOK_SKIP_PM=1Bypass package manager enforcement

References

  • Plankton (credit: @alxfazio)
  • Plankton REFERENCE.md — Full architecture documentation (credit: @alxfazio)
  • Plankton SETUP.md — Detailed installation guide (credit: @alxfazio)

ECC v1.8 Additions

Copyable Hook Profile

Set strict quality behavior:

bash
export ECC_HOOK_PROFILE=strict
export ECC_QUALITY_GATE_FIX=true
export ECC_QUALITY_GATE_STRICT=true
Language Gate Table
  • TypeScript/JavaScript: Biome preferred, Prettier fallback
  • Python: Ruff format/check
  • Go: gofmt
Config Tamper Guard

During quality enforcement, flag changes to config files in same iteration:

  • biome.json, .eslintrc*, prettier.config*, tsconfig.json, pyproject.toml

If config is changed to suppress violations, require explicit review before merge.

CI Integration Pattern

Use the same commands in CI as local hooks:

  1. run formatter checks
  2. run lint/type checks
  3. fail fast on strict mode
  4. publish remediation summary
Health Metrics

Track:

  • edits flagged by gates
  • average remediation time
  • repeat violations by category
  • merge blocks due to gate failures

Gabe's addition: oxlint complexity + ratchet ceiling (JS/TS)

Closes the JS/TS gap in the model-routing table above. Python complexity (ruff C901, PLR) already routes to Sonnet. JS/TS had no equivalent rule turned on by default.

Turn on oxlint's complexity rule when using it

oxlint's complexity rule (source: eslint's complexity rule, ported) lives in the "restriction" category, which oxlint does not enable by default. It must be turned on by hand. Verified against Oxlint's complexity rule (2026-08-27): default option is max: 20. The rule is available in oxlint >= 1.37.0.

The skill's Language-Specific Dependencies table keeps oxlint optional for TypeScript/JS generally. When adopting the complexity rule, use oxlint >= 1.37.0 and treat it as a required dependency. Add the rule to the supported oxlint configuration the project already uses (.oxlintrc.json, .oxlintrc.jsonc, oxlint.config.ts, or oxlint.config.mts). If none exists, create one; do not create a second configuration file in the same directory.

Measure the codebase's current worst complexity score before choosing the initial enforced ceiling. The template below is intentionally incomplete: replace <MEASURED_CEILING> with that score, optionally plus a small amount of headroom, before committing the "error" gate. Oxlint's default of 20 is a long-term target, not a safe universal starting ceiling.

json
{
  "rules": {
    "complexity": ["error", { "max": "<MEASURED_CEILING>" }]
  }
}

Replace the placeholder before running oxlint; it is not a valid numeric threshold until the repository has been measured. See the ratchet section below for how the ceiling gets set on a real codebase.

Show full SKILL.md (480 more words)Show less
Model-routing row

Add oxlint complexity violations to the same row as the existing Python entry in the Phase 3 subprocess table:

├─ Sonnet: complexity, refactoring (C901, PLR codes, oxlint complexity), 300s timeout

Same tier as Python's C901/PLR. A complexity violation is a refactoring job either way, language does not change the model tier.

The ratchet-ceiling technique

Source: Hunk PR #861 (merged 2026-08-26, verified against the PR's own diff and description via the GitHub API, not paraphrased from memory). Hunk turned on oxlint's complexity rule with "error", { "max": 80 } in .oxlintrc.json. Their own worst score at the time was 78 (App), next was 76 (validateFileViewLayout). From the PR body: "This is intentionally an initial regression ceiling rather than the long-term target... so 80 adds enforcement without grandfathering or suppressions. The ceiling can be ratcheted downward as existing hotspots are simplified." And: "A global ceiling does not prevent a function below 80 from growing toward it."

The technique, as actually run in that PR:

  1. Measure the current worst complexity score in the codebase (oxlint reports it when the rule fires).
  2. Set the ENFORCED ceiling to a value at least as high as that worst score, not to oxlint's own default of 20. Add a small amount of headroom if needed so the initial enable does not fail CI on a score you have not fixed yet (hunk used 80 against a worst of 78).
  3. Commit that as "error", wired into the existing lint CI step. This is a real gate from the first commit, not a suggestion.
  4. Never grandfather. The ceiling is global. A function sitting at 40 today is not exempt, it still cannot cross the ceiling later. That is the whole point: catch growth, not just today's worst offenders.
  5. Never blanket-suppress. No per-file or per-function disable comments to make a violation go away. Fix it or leave it under the ceiling.
  6. Each time a flagged hotspot is refactored below the ceiling, re-measure the global maximum across the whole codebase. Lower the ceiling by hand only to a value that remains at least as high as every remaining function's score (plus any deliberate headroom). This is a manual step done as its own commit, not automated. It is how the ceiling moves toward the linter's real default of 20 over time instead of sitting at the codebase's worst score forever.

One caveat, stated plainly: the PR itself went straight from "rule off" to "error" enforcement in one commit. It did not stage through a report-only or warn-only phase first. Starting with the rule set to "warn" for one CI run before flipping it to "error" is a reasonable staging step if a team has never measured its own worst score and does not want a surprise CI failure, but that staging step is Gabe's own prudent practice, not something verified in hunk's PR. Say so if you use it, do not attribute it to the source.

© affaan-m, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/plankton-code-quality of affaan-m/ECC.

Open the folder on GitHubat commit ef648e0

Used in 5 other repositories

We found 10 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 5 other GitHub owners. This page covers the copy in affaan-m/ECC, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Plankton Code Quality next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Plankton Code Quality compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Plankton Code Quality this skillaffaan-m/ECC274k5 repos~3.2kAutomated safety check: PassMIT
Install Anti-Slop Oxlint Rulesdmmulroy/anti-slop5.2k—~2.2kAutomated safety check: PassMIT
DevAutomattic/wordpress-activitypub582—~1.1kAutomated safety check: PassMIT
Plankton Code Qualityxu-xiang/everything-claude-code-zh2k—~1.2kAutomated safety check: PassMIT
Add Opik Code Quality Hookcomet-ml/opik22k—~2.3kAutomated safety check: PassApache-2.0
LobeHub Alint Rule Set Maintenancelobehub/lobehub83k—~1.9kAutomated safety check: PassCustom licence

Similar skills

  • Installs, updates or migrates the vendored anti-slop Oxlint plugin in a repository, keeping local rule changes and the plugin's license and provenance files.

    5.2k GitHub stars~2.2k tokensUpdated 27 days ago
    DevelopmentAuto-check passed
  • Dev

    Automattic/wordpress-activitypub

    Development workflows for WordPress ActivityPub plugin including wp-env setup, testing commands, linting, and build processes.

    582 GitHub stars~1.1k tokensUpdated today
    DevelopmentAuto-check passed
  • Plankton Code Quality

    xu-xiang/everything-claude-code-zh

    使用 Plankton 实现编写时代码质量强制执行 —— 通过钩子在每次文件编辑时进行自动格式化、代码检查,并由 Claude 驱动自动修复。

    2k GitHub stars~1.2k tokensUpdated 7 mo ago
    DevelopmentAuto-check passed
  • Checklist for wiring a new linter into Opik's Code Quality pipeline: the four files to edit, the silent-failure gotchas and the pass/fail verification loop.

    22k GitHub stars~2.3k tokensUpdated today
    DevelopmentAuto-check passed
  • Maintains LobeHub's model-backed alint rule set: writing rules, removing false positives against real code, deciding warn versus error and tracking token cost.

    83k GitHub stars~1.9k tokensUpdated today
    DevelopmentAuto-check passed
  • Code Quality Gate

    fengshao1227/ccg-workflow

    Scans code for complexity, long functions, duplicated blocks, naming problems and code smells with a Node script, then reports and suggests refactors.

    5.9k GitHub stars~593 tokensUpdated 22 days ago
    DevelopmentAuto-check: notes

More from affaan-m/ECC

All 657 skills in this repo
  • Skill Stocktake

    affaan-m/ECC

    Audits your installed Claude skills and commands for quality, with a quick mode for recently changed skills and a full mode that evaluates all of them through subagents.

    274k GitHub starsUsed in 5 repos~1.9k tokens
    Auto-check passed
  • Videodb

    affaan-m/ECC

    Ingest, index, search, edit, and monitor video and audio with the VideoDB Python SDK — upload from files, URLs, or RTSP feeds, build spoken and scene indexes with timestamped search and playable…

    274k GitHub starsUsed in 3 repos~3.5k tokens
    Auto-check: notes
  • Rules Distillation

    affaan-m/ECC

    Scans installed skills for principles that recur across them and proposes rule-file changes: append, revise, add a section, create a file or leave as covered.

    274k GitHub starsUsed in 2 repos~2.3k tokens
    Auto-check passed
  • Builds DRAFT counterparty agreements from one markdown template and a small JSON spec per party, with clauses picked by the party's role.

    274k GitHub stars~2.9k tokensUpdated 2 days ago
    Auto-check passed
  • Measures whether agents actually follow a skill, rule or agent definition by generating scenarios at three strictness levels and scoring tool-call traces.

    274k GitHub starsUsed in 1 repo~623 tokens
    Auto-check passed
  • Instinct-based learning system that observes sessions via hooks, creates atomic instincts with confidence scoring, and evolves them into skills/commands/agents.

    274k GitHub stars~3.5k tokensUpdated 2 days ago
    Auto-check passed

Works with

Categories

Questions about Plankton Code Quality

What does Plankton Code Quality do?

Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks. Plankton Code Quality is an agent skill from affaan-m/ECC. Write-time code quality enforcement using Plankton — auto-formatting, linting, and Claude-powered fixes on every file edit via hooks.

When should I use Plankton Code Quality?

Plankton Code Quality fits situations like: setting up write-time formatting; auto-fix hooks on file edits.

How do I install Plankton Code Quality in Claude Code?

Run `npx skills add affaan-m/ECC --skill plankton-code-quality -a claude-code`. Or copy the skill folder (skills/plankton-code-quality in affaan-m/ECC) into .claude/skills/plankton-code-quality in your project. Claude Code loads it when a task matches its description.

How do I install Plankton Code Quality in Codex?

Run `npx skills add affaan-m/ECC --skill plankton-code-quality -a codex`. Or copy the skill folder (skills/plankton-code-quality in affaan-m/ECC) into .agents/skills/plankton-code-quality in your project. Codex loads it when a task matches its description.

Can I use Plankton Code Quality in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add affaan-m/ECC --skill plankton-code-quality -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/plankton-code-quality, .gemini/skills/plankton-code-quality, .github/skills/plankton-code-quality and .opencode/skills/plankton-code-quality in your project.

What does Plankton Code Quality need to run?

Going by SKILL.md and its folder, Plankton Code Quality needs the command-line tools its instructions call (npm, brew, uv, claude and git). Our summary lists: Python 3.

Does Plankton Code Quality access the network?

SKILL.md names 2 domains. As links in the text: oxc.rs and github.com. This is read from the text; nothing was executed.

Is Plankton Code Quality safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Plankton Code Quality use?

Plankton Code Quality is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Plankton Code Quality use?

About 3.2k tokens (SKILL.md is roughly 13k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Plankton Code Quality?

Skills that share tags, products or a category with Plankton Code Quality: Install Anti-Slop Oxlint Rules (dmmulroy/anti-slop, 5.2k stars), Dev (Automattic/wordpress-activitypub, 582 stars), Plankton Code Quality (xu-xiang/everything-claude-code-zh, 2k stars) and Add Opik Code Quality Hook (comet-ml/opik, 22k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Plankton Code Quality?

affaan-m (a GitHub user) maintains it in affaan-m/ECC, which has 274,360 GitHub stars. The repository holds 657 skills in this directory. The repository was last updated on October 5, 2026.

Source: affaan-m/ECC on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.