Manage agentic work across repositories with durable workbases
LPM treats this as warn-only first-party agent extension lifecycle risk. Installation copies a first-party Agency extension into Pi's user extension directory. The extension conditionally exposes project skill paths and adds Agency context to Pi agent sessions in Agency workbases; no exfiltration or remote payload path was found.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgpostinstall automatically invokes the Pi extension installer.
package.jsonView on unpkg · L65Package source references dynamic require/import behavior.
src/utils/interactive-loader.tsView on unpkg · L3Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L66Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L66postinstall automatically invokes the Pi extension installer.
package.jsonView on unpkg · L65Package source references dynamic require/import behavior.
src/utils/interactive-loader.tsView on unpkg · L3