Personal pi coding agent toolkit: /todos, /btw, /cache_export extensions, browser automation, and bundled theme/skills.
LPM flags this version as an AI-agent control-surface risk. Npm installation automatically alters the user's global Pi agent instruction and settings files. It also drops a command and shell-completion file into home-directory locations.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgPackage source references child process execution.
extensions/cache-export/tests/e2e-browser.mjsView on unpkg · L12Package source references shell execution.
extensions/cache-export/tests/e2e-browser.mjsView on unpkg · L187Source file is highly similar to a previously finalized malicious package; route for source-aware review.
extensions/cache-export/tests/e2e-browser.mjsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
skills/chrome-cdp/scripts/cdp.mjsView on unpkg · L12Source file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/chrome-cdp/scripts/cdp.mjsView on unpkgSource creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/install-agents.mjsView on unpkg · L1Package ships non-JavaScript build or shell helper files.
bin/pi-worktree-completion.bashView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
bin/pi-worktreeView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/web-browser/scripts/start.jsView on unpkgThis report applies to @maxiaochao/pi-toolkit@0.5.2.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L54Package ships non-JavaScript build or shell helper files.
bin/pi-worktree-completion.bashView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
bin/pi-worktreeView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/web-browser/scripts/start.jsView on unpkgPackage source references child process execution.
extensions/cache-export/tests/e2e-browser.mjsView on unpkg · L12Package source references shell execution.
extensions/cache-export/tests/e2e-browser.mjsView on unpkg · L187Source file is highly similar to a previously finalized malicious package; route for source-aware review.
extensions/cache-export/tests/e2e-browser.mjsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
skills/chrome-cdp/scripts/cdp.mjsView on unpkg · L12Source file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/chrome-cdp/scripts/cdp.mjsView on unpkgSource creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/install-agents.mjsView on unpkg · L1