Declarative, user-definable permission modes for the pi coding agent: OS-level sandboxing (bubblewrap / sandbox-exec), an allow/ask/deny policy engine, real bash AST gating (tree-sitter), tool hiding, and skill/custom-tool gating.
Static analysis flagged 9 finding(s) at 93.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgSource writes installer persistence such as shell profile or service configuration.
src/paths.test.tsView on unpkg · L51This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/index.tsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L45Source writes installer persistence such as shell profile or service configuration.
src/paths.test.tsView on unpkg · L51This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/index.tsView on unpkg