Packages

6.2k listings for pi

🛡 Guards & policy Block or rewrite dangerous tool calls, sandbox commands, enforce permissions.

323 results · page 5 of 7

extension

guardrails-notify

Pi extension that sends cmux, terminal, and native notifications when guardrails waits for approval.

📡📁 +1
jpballares ↓ 76
extension

pi-audit-master

Professional multi-agent codebase auditing and automated repair engine

📁🔧
realvendex ↓ 74
skill

@firstpick/pi-skill-dolt-database-version-control

Use automatically when evaluating or applying Dolt, the Git-like version-controlled SQL database, for database branching, merging, diffs, audit history, rollback, or versioned MySQL replica workflows.

firstpick ↓ 71
extension

pi-extension-e2b

E2B cloud sandbox integration for pi — redirects all tool execution to a remote E2B sandbox

🤖🔑📁 +4
edlsh ↓ 71
extension

@kjrjay/pi-sandbox

Run Pi file and shell tools in an isolated Apple Container or Docker workspace

🤖🔑📁 +4
kjrjay ↓ 68
extension

pi-wayfinder-guard

Pi extension enforcing no-implementation during wayfinder (fog mode), with a parallel four-axis code review.

🤖📁 +2
tianhai ↓ 68
extension

pi-vuln-scanner

A pi extension that scans locally installed pi packages for vulnerabilities and supply-chain risk.

🔑📁🌐 +1
GitHub Actions ↓ 68
extension

executor-pi

`executor-pi` is a first-class Pi extension for running Executor from inside Pi with native approval, elicitation, rendering, and project-aware Executor configuration.

📁🔧
aryasaatvik ↓ 67
extension

@ifi/oh-pi-extensions

Core pi extensions: git-guard, auto-session, custom-footer, and more.

🤖📡🔑 +5
ifiokjr ↓ 67
tool

hyperresearch-pi

Deep research harness for pi — tier-adaptive 16-step pipeline with adversarial audit, source provenance, and a persistent searchable vault. Wraps the hyperresearch Python CLI.

🤖📁 +3
gongsunyuan ↓ 67
extension

@raquezha/noleaks

Security credentials protector shield for the Pi Coding Agent — blocks LLM access to .env, keys, and secrets

🤖📁
raquezha ↓ 66
extension

@oddsjam/pi-sandbox

OS-level sandbox for pi using @anthropic-ai/sandbox-runtime, with an in-pi configure wizard, shift+tab toggle, and longest-prefix project configs.

📁🔧 +1
GitHub Actions ↓ 65
extension

pi-recon-tools

Security reconnaissance toolkit. Headers audit, SSL check, DNS, port scan, tech fingerprinting, path discovery.

🌐🔧
artale ↓ 65
toolextension

pi-sandbox-proxy

pi coding-agent extension that intercepts network operations with approval flows, vulnerability scanning, and supply chain security enforcement.

🤖📁🌐 +1
thegreataxios ↓ 64
promptextension

pi-secure-it

In-process tool guard and subagent posture hardening for Pi coding agent. Enforces filesystem allow/deny lists and domain allowlists on read, write, edit, fetch_content, web_search, and get_search_content — with interactive ask-tier prompts to grant acces

📁🔧 +1
GitHub Actions ↓ 63
skillprompt

@odradekk/vera-session-tools

Session lifecycle tools for Vera agent (ask-user, todo, check-vera, output-guard, compaction, prompt-rules, read-cap, conditional-rules, system-env, skill-catalog, time, notify-sound)

🤖🔑📁 +6
odradekk ↓ 62
extension

@ramarivera/pi-model-guardrails

Deterministic destructive-command guard + inviolable-constraint policy engine and deviation state machine for the Pi coding agent

🤖🔑📁 +2
GitHub Actions ↓ 61
skill

@barlevalon/documentation-system-skill

Apply Divio's four-quadrant documentation system to write, audit, classify, restructure, and review technical documentation. Use when creating or improving tutorials, how-to guides, reference docs, explanations, docs...

GitHub Actions ↓ 61
extension

pi-thinking-only-guard

Auto-recover trapped tool calls from thinking blocks for Qwen3.6 and similar models

🤖
reluxa ↓ 61
extension

@orca-sec/pi-orca

Official ryk Pi integration for fail-closed bash and file protection.

🤖📁 +1
karc14 ↓ 61
extension

pi-1password

1Password Pi coding agent secret management

🔑📁🔧 +1
kylebrodeur ↓ 61
extension

@artale/pi-pentest

Security scanning: nmap wrapper, vulnerability checks

artale ↓ 61
promptextension

pi-command-guard

A pi extension that intercepts potentially dangerous bash commands and prompts for confirmation before execution

🤖📁
shreyashp7 ↓ 61
extension

@uiyzzi/pi-asroot

sudo for pi — agent asks, user types their password into a masked TUI input, password never reaches the model

🤖📁
GitHub Actions ↓ 60
prompt

@uiyzzi/pi-askpass

TUI secret prompt for pi — agent asks, user types in a masked input, value never reaches the model

🤖📁 +2
GitHub Actions ↓ 60
extension

pi-agent-review

A pi coding-agent extension that reviews every tool call and tool output with an LLM reviewer, hard-denies secret access, and gates risky actions behind user approval.

🔑📁🌐 +2
ejmorgan ↓ 59
extension

pi-quick-perms

Permission enforcement and quick policy commands for the Pi coding agent.

🤖📁 +2
GitHub Actions ↓ 59
promptextension

@piotr-oles/pi-bash-timeout

Pi Agent extension: inject a default bash timeout and append timeout policy guidance to the system prompt

🤖
piotr-oles ↓ 59
extension

pi-refusal-guard

A Claude safety-classifier refusal shouldn't kill your turn — rescue, retarget the server-side fallback chain, and see what's tripping.

🤖📁📡
GitHub Actions ↓ 58
skillextension

pi-chefs

Long-running expert Pi sessions (chefs) that other agents consult via pi-postman. Persona + skill-allowlist layer on top of pi-postman.

🤖📁 +2
GitHub Actions ↓ 54
extension

@iota-policy/pi-extension

iota embedded policy engine as a pi coding-agent extension: hash-pinned bless, agents.yaml enforcement for read/write/edit/bash, JSONL decision log

📁
GitHub Actions ↓ 54
prompt

@kassing/pi-menu

Interactive menus & input for pi — proactive multi-question tabs, option search filter, single/multi select, typed input (text/secret/number/date/path), configurable emoji

🤖📁🔧
kassing ↓ 54
extension

@dr4x14913/pi-python-sandbox

Pi extension that adds a safe readonly python sandbox in the currrent directory

🔧
dr4x14913 ↓ 53
extension

@the-forge-flow/security-harness-pi

Security harness for the PI coding agent — forbids dangerous commands and gates sensitive ones behind user approval

📁
the-forge-flow-ai ↓ 52
extension

@artale/pi-sentinel

Agent security framework. Immutable audit trail, permission policies, self-modification detection, destructive command guard.

📁🔧
artale ↓ 52
extension

@nightona-co/pi

Pi coding agent extension that runs all tool calls inside a remote, ephemeral Nightona sandbox while the agent runs locally

🤖🔑 +2
amaraa0404 ↓ 52
extension

pi-grok-build-acp

Use the official Grok Build ACP agent from Pi with interactive permission bridging.

🤖🔑📁 +1
am518 ↓ 51
extension

pi-permission

Layered permission control extension for pi-coding-agent (no sound)

📁
kmulliken ↓ 50
toolextension

@melihmucuk/leash

Security guardrails for AI coding agents

📁🌐 +1
melihmucuk ↓ 49
extension

pi-tool-guard

Pi extension that corrects LLM tool calls: normalizes argument aliases for edit/write/read and strips trailing pipeline extractors from bash commands

🔧
tychenjiajun ↓ 49
extension

@isr4el-silv4/loop-guard

Pi extension that detects and prevents LLM loops in tool calls and reasoning

🤖
isr4el-silv4 ↓ 48
extension

pi-docker-sandbox

Lightweight Docker sandbox for pi coding agent

🤖📁 +2
jacksenechal ↓ 48
extension

@nilskluewer/pi-permission-gate

Confirm or block dangerous bash commands before the Pi coding agent executes them.

🔑
nilskluewer ↓ 48
extension

pi-root-grant

Pi extension that lets agents request temporary sudo-backed root access with explicit user approval.

📁🔧
faithless ↓ 46