Packages

6.2k listings for pi

🛡 Guards & policy Block or rewrite dangerous tool calls, sandbox commands, enforce permissions.

323 results · page 4 of 7

extension

pi-redteam

Multi-agent red teaming system for Pi - 10 specialized security agents for vulnerability assessment and penetration testing

🤖📡🔀 +2
jtregunna ↓ 132
skill

@yammd/forge-skills

Global AI Skills Ecosystem for code review and audit

yammd ↓ 131
extension

@xicode/pi-permission-system

Prebuilt and audited distribution of the Pi permission system extension

🤖📁 +2
GitHub Actions ↓ 130
extension

pi-permission-layers

Pi extension to handle permissions using a layered approach

📁
gsanhueza ↓ 127
themeskill

zmarketplace

Cross-agent marketplace search: find, audit, and install plugins/skills/themes/prompts across pi, omp, claude code, opencode, gemini cli, and codex

🔑📁🌐 +1
zicodev ↓ 121
extension

pi-seatbelt-sandbox

macOS Seatbelt sandbox extension package for pi bash and file-tool access controls.

📁🔧 +1
thaodangspace ↓ 121
extension

pi-secret-guard

A pi extension that guards against committing secrets, API keys, and credentials to git repositories using hybrid regex + LLM review.

📁
acarerdinc ↓ 121
extension

pi-container-sandbox

pi coding-agent extension that runs every read/write/edit/bash op inside a per-session Linux container (Apple `container` or Docker).

🤖📁 +2
thegreataxios ↓ 119
promptextension

@agentoom/pi-spending-guard

Track LLM spending per task and pause when a configurable threshold is reached — continue, refine the prompt, or stop. Pi extension by agentoom.com.

🤖📁
agentoom ↓ 115
extension

@itc-steve/pi-ask-complete

Pi extension: bottom-panel ask_user + bash permission gate (Allow / Allow permanently / Deny with reason) writing ~/.pi/agent/permission.json

🤖📁 +2
GitHub Actions ↓ 115
extension

pi-hooks

Collection of pi extensions (checkpoint, lsp, permission, ralph-loop, repeat)

🤖📁 +3
prateekmedia ↓ 112
extension

pi-dcg

Guard Pi shell commands with Destructive Command Guard.

📁🌐 +1
GitHub Actions ↓ 111
promptextension

picodesandbox

OS-level sandboxing for pi with interactive permission prompts

📁🔧 +1
tomasko ↓ 111
skill

@firstpick/pi-skill-code-security

Agents should invoke this skill for code security reviews, leaked secret checks, dependency risk, unsafe shell/Python/TypeScript/Rust patterns, auth/input-validation flaws, SAST-style audits, or supply-chain concerns in repositories.

firstpick ↓ 109
extension

@minhduydev/pi-learning

Append-only project-local learning ledger for Pi with two separate trust gates: manual human approval, and a bounded auto-safe machine gate that is on by default in Pi-trusted projects. Selective fork of Matt Devy's pi-continuous-learning.

🤖📡📁
minhduydev ↓ 104
extension

@agentoom/pi-reviewer

Post-task multi-area code review extension for pi — 7 specialised review areas (general, security, code quality, UI/UX, testing, performance, scope) with a checkbox picker UI

🔑📁🌐
agentoom ↓ 103
extension

@grwnd/pi-governance

Governance, RBAC, audit, and HITL for Pi-based coding agents

📁🌐 +1
dt-grwnd ↓ 100
extension

pi-fff-non-ascii-guard

Pi extension that detects and renames non-ASCII filenames before fff-core can panic on UTF-8 byte boundaries.

🤖📁🔧 +1
GitHub Actions ↓ 99
skill

@firstpick/pi-skill-subagent-governance

Portable Agent Skill that governs delegation admissibility for a parent orchestrator, covering zero-or-multiple fanout, the static two-worker minimum, role-fit balance, one-writer isolation, worker handoffs, bounded retry safety, and reviewer finding disp

firstpick ↓ 99
extension

pi-permissions

Configurable allow/deny permission rules for pi tool calls — control which bash commands, file reads, writes, and edits the agent can perform.

📁
GitHub Actions ↓ 96
extension

@christianmoesl/pi-sbx

Run Pi coding-agent tool calls inside Docker sbx sandboxes

🤖📁 +2
christianmoesl ↓ 95
extension

@jerryan/pi-sanity

Pi extension for sanity checks on agent operations

📁
jerryan ↓ 95
extension

pi-guard-sandbox

A lightweight OS-level guard for Pi: agents stay useful, sensitive paths stay blocked, and writes stay inside the workspace you allow. No container overhead. No workflow drama.

📁🌐 +2
runminton ↓ 93
skillextension

loop-skills

Research-driven planning, debugging, and audit skills for Codex, Pi, and Claude Code

🤖📁🌐 +2
tech1e ↓ 92
extension

@andre-barbosa/pi-review

A read-only two-stage code review extension for pi

🤖🔑📁 +1
andre-barbosa ↓ 91
extension

pi-perm

Config-driven Pi sandbox and permission extension using sandbox-runtime.

📁🔧 +1
dcrcold ↓ 90
extension

@estebanforge/pi-js-review

JavaScript code-review tool for Pi. Grades your git diffs against a focused JS flaws rubric (5 sections, 18 entries: equality/coercion, async, mutation/scope, globals/prototypes, security). Each entry has a bad/good pair; the LLM proposes a corrected snip

📁🔧
estebanforge ↓ 90
extension

@accolver/bash-guard

Bash Guard pi extension with deterministic sensitive-command protection and LLM voting

🔑🌐 +1
accolver ↓ 90
skillextension

pi-agent-booster-pack

Agent Booster Pack helps Pi produce code that is well-organized, low in complexity and side effects, and is secure and high-performing.

kreek ↓ 88
extension

@rhedbull/pi-permissions

Claude Code-style permission modes for pi. Controls approval for file writes, edits, and bash commands with four modes: default, acceptEdits, fullAuto, and bypassPermissions.

📁
rhedbull ↓ 87
extension

pi-gondolin-mount

pi extension that sandboxes LLM coding agents inside a Gondolin micro-VM with configurable additional mounts

🤖📁🔧 +1
abobco ↓ 87
skill

@firstpick/pi-skill-research-orchestration

Agents should invoke this skill for broad multi-claim research projects needing planning, parallel investigation, source merging, gap closure, citation audit, and final synthesis when narrower research skills are insufficient.

firstpick ↓ 85
extension

@xaccefy/pi-engage

Authenticated-session manager for Pi Agent — store and resolve cookie, OAuth client-credentials, and mTLS auth for authorized pentest targets

🔑📁🌐 +2
xaccefy ↓ 84
extension

@arvoretech/pi-secret-firewall

Redacts secrets (env vars, .env files, token patterns) from the model context and tool outputs, exposing them only as $SECRET_* shell env vars the model can reference but never read

🤖📁
GitHub Actions ↓ 83
extension

@uiyzzi/pi-shroud

High-performance secret firewall for pi — secrets usable as shell vars, never visible to models

🤖📁
GitHub Actions ↓ 83
skilltool

pi-secrets-guard

Block secrets and PII before they land: regex + entropy scanning for files, diffs, and AI coding agents. CLI, MCP server, Claude/Cursor skill, and pi extension.

📁
vaibhav290797 ↓ 82
extension

@yassimba/pi-guardrails

Editable distribution of Pi Guardrails for local policy customization

🤖📡📁 +3
yassimba ↓ 82
extension

@aslamplr/pi-safe-shell

Protect your production assets from dangerous bash commands. Default no-bash mode with user approval gates and whitelist support.

🤖📡📁 +3
GitHub Actions ↓ 81
extension

pi-vscode-sr

Code diff assistant for VS Code.

🤖📁🛠
serhioromano ↓ 81
toolextension

whisper-pi

Native Pi extension: give a Pi coding agent a real, routable Whisper IPv6 /128 identity - keyless verify/RDAP; the full control plane, /128 egress, and the whisper.security graph (Cypher + 29 recipes) with a key.

🔧
kakooch ↓ 80
prompt

sterlai

Terminal AI agent for Stellar. Chat-driven payments, path payments, trustlines, and friendbot funding on testnet, with a separate signer daemon that prompts for explicit approval on every signature.

🤖🔑📁 +3
zanlabs ↓ 80
skill

@firstpick/pi-skill-server-audit

Agents should invoke this skill for Linux server security reviews, SSH hardening, firewall/open-port audits, user/permission checks, exposed services, or host hardening requests. Produces severity-rated findings and practical remediation steps.

firstpick ↓ 79
extension

@nqbao/pi-sandbox

OS-level sandbox for pi coding agent — macOS sandbox-exec / Linux bubblewrap kernel-enforced isolation

📁🔧 +1
nqbao ↓ 78
extension

@self-deprecated/pi-agent-tick

Agent Tick control-plane integration for Pi: remote decisions, approvals, and session status updates

📡🔑📁 +3
jeprecated ↓ 76
extension

pi-posher

Helps clankers keep code prim and proper with linters, formatters and security tools

🤖📁 +2
jeffphil ↓ 76
extension

@sysid/pi-sandbox

OS + app sandboxing extension for the pi coding agent

📁🔧 +1
sysid ↓ 76