Packages

6.2k listings for pi · 0 reviewed by us

🛡 Guards & policy Block or rewrite dangerous tool calls, sandbox commands, enforce permissions.

323 results · page 5 of 7

toolextension

pi-agent-permissions

Pi CLI extension — configurable permission policy from .agents/permissions.json and native agent configs

GitHub Actions ↓ 133
extension

@raquezha/noleaks

Security credentials protector shield for the Pi Coding Agent — blocks LLM access to .env, keys, and secrets

🤖📁
raquezha ↓ 133
extension

@shelken/pi-defender

Defense-in-depth protection for Pi coding agent. Blocks dangerous commands and protects sensitive files — fork of Serhioromano/pi-defender with defaultMode support.

📁
shelken ↓ 132
extension

pi-1password

1Password Pi coding agent secret management

🔑📁🔧 +1
kylebrodeur ↓ 131
extension

pi-agent-review

A pi coding-agent extension that reviews every tool call and tool output with an LLM reviewer, hard-denies secret access, and gates risky actions behind user approval.

🔑📁🌐 +2
ejmorgan ↓ 129
extension

pi-protected-paths

Blocks write/edit/read of sensitive files (.env, .git, node_modules, SSH keys, credentials, and more)

thegreataxios ↓ 126
extension

pi-hooks

Collection of pi extensions (checkpoint, lsp, permission, ralph-loop, repeat)

🤖📁 +3
prateekmedia ↓ 126
extension

@sysid/pi-sandbox

OS + app sandboxing extension for the pi coding agent

📁🔧 +1
sysid ↓ 125
extension

pi-secret-sentinel

A security middleware for Pi that intercepts and blocks the writing of API keys and secrets to disk.

📁🔧
realvendex ↓ 125
extension

@jerryan/pi-bash-wrap

Sandbox pi bash commands with bubblewrap

📁🔧 +1
jerryan ↓ 123
extension

pi-audit-master

Professional multi-agent codebase auditing and automated repair engine

📁🔧
realvendex ↓ 123
extension

@biratkk/pi-trust-policy

Bash command allowlist system for pi — grouped trust policies with glob matching, recursive parsing, and an interactive TUI manager

📁
biratkk ↓ 120
extension

pi-permissive

A deliberately permissive permission gate for the Pi coding agent — blocks only destructive commands, never nags.

nilskluewer ↓ 118
extension

@alexleekt/pi-pkg-guard

Don't let orphaned packages clutter your agent. Guard against unregistered pi packages.

📁
GitHub Actions ↓ 118
extension

@oddsjam/pi-sandbox

OS-level sandbox for pi using @anthropic-ai/sandbox-runtime, with an in-pi configure wizard, shift+tab toggle, and longest-prefix project configs.

📁🔧 +1
GitHub Actions ↓ 117
skilltool

pi-autoskills

Audited autoskills-style installer for pi. Detect stack, discover vetted skills, audit upstream bundles, cache locally, install safely.

🔑📁🌐 +1
denismrvoljak ↓ 116
toolextension

@melihmucuk/leash

Security guardrails for AI coding agents

📁🌐 +1
melihmucuk ↓ 115
prompt

sterlai

Terminal AI agent for Stellar. Chat-driven payments, path payments, trustlines, and friendbot funding on testnet, with a separate signer daemon that prompts for explicit approval on every signature.

🤖🔑📁 +3
zanlabs ↓ 111
extension

@vanillagreen/pi-output-policy

OMP-style large-output policy for Pi tool results: minimization, bounded truncation, and spill-file preservation.

📁
vanillagreencom ↓ 110
extension

pi-security-review

High-signal security review package for Pi.

📁🔧
GitHub Actions ↓ 108
prompttool

@iurysza/pi-context-audit

Audit Pi system prompt, tool schema, context usage, and MCP overhead.

🤖📁📡 +1
iurysza ↓ 106
promptextension

@foxfirecodes/pi-sandbox

OS-level sandboxing for pi with interactive permission prompts (fork)

📁🔧 +1
foxfirecodes ↓ 105
extension

@iurysza/pi-secret-env

Load shared credentials into Pi while blocking and redacting secret access.

📁
iurysza ↓ 105
extension

pi-minimax-pack

Pi agent harness with policy gates, project detection, verification loop, drift protection, artifact validation, and runtime enforcement for weak models

🤖📁
syafriadi ↓ 103
extension

pi-extension-e2b

E2B cloud sandbox integration for pi — redirects all tool execution to a remote E2B sandbox

🤖🔑📁 +4
edlsh ↓ 103
extension

@artale/pi-sentinel

Agent security framework. Immutable audit trail, permission policies, self-modification detection, destructive command guard.

📁🔧
artale ↓ 102
toolextension

pi-perms

Pi CLI extension — configurable permission policy from .agents/permissions.json and native agent configs

GitHub Actions ↓ 102
extension

@ssweens/pi-leash

Security hooks for Pi to reduce accidental destructive actions and secret-file access.

📡📁 +1
ssweens ↓ 101
extension

@nklisch/pi-clearance

Configurable auto-reviewer Pi extension for parsed, structural command policy

🤖🔑📁 +4
nklisch ↓ 101
extension

pi-secret-guard

A pi extension that guards against committing secrets, API keys, and credentials to git repositories using hybrid regex + LLM review.

📁
acarerdinc ↓ 99
skillprompt

@fingerskier/pi-council

Council deliberation plugin for Pi with roster templates, personas, audit records, and council workflow prompts

fingerskier ↓ 98
extension

pi-claude-permissions

Claude-style allow/deny/ask permission lists for Pi tool calls

📁
tuan_son.dinh ↓ 97
extension

@igormaka/pi-sandbox

A proper sandbox extension for pi, using the Anthropic Sandbox Runtime

🤖📁 +2
igormaka ↓ 93
extension

@rhedbull/pi-permissions

Claude Code-style permission modes for pi. Controls approval for file writes, edits, and bash commands with four modes: default, acceptEdits, fullAuto, and bypassPermissions.

📁
rhedbull ↓ 92
extension

@4meta5/pi-ozcar

Pi-first audit extension package for structured security reviews and deterministic comparison exports

📁🔧
4meta5 ↓ 92
extension

@panzenbaby/pi-secure-extension

A Pi extension that performs security audits on other extensions before install or update. Uses the currently selected AI model to analyze extension source code against configurable audit rules.

🤖📁 +1
panzenbaby ↓ 91
extension

@estebanforge/pi-js-review

JavaScript code-review tool for Pi. Grades your git diffs against a focused JS flaws rubric (5 sections, 18 entries: equality/coercion, async, mutation/scope, globals/prototypes, security). Each entry has a bad/good pair; the LLM proposes a corrected snip

📁🔧
estebanforge ↓ 91
extension

pi-permission

Layered permission control extension for pi-coding-agent (no sound)

📁
kmulliken ↓ 91
extension

pi-docker-sandbox

Lightweight Docker sandbox for pi coding agent

🤖📁 +2
jacksenechal ↓ 91
extension

@false00/pi-elasticsearch

Production-focused Elasticsearch automation tools for the Pi coding agent — curated tools for search, documents, indices, cluster administration, security, lifecycle, and full API reach via the official JS client and raw REST access

🔑📁🔧
false00 ↓ 90
extension

pi-redteam

Multi-agent red teaming system for Pi - 10 specialized security agents for vulnerability assessment and penetration testing

🤖📡🔀 +2
jtregunna ↓ 90
extension

@odradekk/vera-scheme-sandbox

Chez Scheme WASM sandbox for Vera agent — platform-independent Scheme evaluation

📁🔧
odradekk ↓ 88
extension

@accolver/bash-guard

Bash Guard pi extension with deterministic sensitive-command protection and LLM voting

🔑🌐 +1
accolver ↓ 88
promptextension

pi-claude-sandbox

Claude-style OS-level sandboxing for pi with interactive permission prompts. Coexists with pi-tool-display and other bash-overriding extensions. Forked from carderne/pi-sandbox.

📁
tuan_son.dinh ↓ 87
extension

@codingcoffee/pi-readonly-ssh

a pi extension for safely running allow-listed, read-only commands on remote hosts over SSH

📁🔀🔧 +1
codingcoffee ↓ 87
skillextension

agent-booster-pack-whiteboard

ABP Pi whiteboarding guard plus whiteboarding skill: one user-facing question at a time.

🤖
kreek ↓ 87