Package Catalog

Extensions, skills, prompt templates, and themes published to npm. Install with pi install npm:<package>. See the package docs for details.

Recently published

All packages

1-50 / 56 (of 5383)
Reset

cc-safety-net

A coding agent CLI hook - block destructive commands and secret file access

kenryu25.2K/mo12m ago
package
$ pi install npm:cc-safety-net

@cad0p/pi-steering

AST-backed steering hooks for pi — deterministic tool-call guardrails with command-level effective-cwd scoping.

cad0p4,189/mo1mo ago
extension
$ pi install npm:@cad0p/pi-steering

pi-smart-compact

Verification-oriented smart compaction extension for Pi Coding Agent — deterministic extraction, exploration, synthesis, verification, metrics, and safety checks.

alpertarhan3,970/mo3d ago
extension
$ pi install npm:pi-smart-compact

@hank-warren/pi-auto-permissions

Fork of @ogulcancelik/pi-auto-permissions with dialog-answer user evidence: context-aware Bash permissions for Pi with automated guardian review.

hank-warren3,409/mo10d ago
extension
$ pi install npm:@hank-warren/pi-auto-permissions

@yaosu/pi-path-guard

Path Guard for pi — blocks destructive commands & path overwrites, protects .env/keys, with strict/normal/loose/trusted/naked guard modes (/guard). pi 防误删/防误覆盖扩展,支持 5 种防护模式。

yaosu2,909/mo1d ago
extension
$ pi install npm:@yaosu/pi-path-guard

@agentapprove/pi

Agent Approve extension for Pi - approve or deny AI agent tool calls from your iPhone and Apple Watch

jbeno2,737/mo21d ago
extension
$ pi install npm:@agentapprove/pi

pi-workspace-history

Real workspace undo/redo for Pi. Bring Claude Code style /rewind and OpenCode /undo safety to @earendil-works/pi-coding-agent.

wcldyx10002,585/mo4d ago
extension
$ pi install npm:pi-workspace-history

pi-typesafe

TypeSafe AI (Jev) decisions for Pi: batched Choice/Score/Noul evaluation tool, terminal playground, and a typed API other extensions build on.

devmortimer2,286/mo9h ago
extension
$ pi install npm:pi-typesafe

@senad-d/guardme

Deny-first Pi guardrails that keep LLM shell and file access safe, transparent, and user-approved.

senad-d2,033/mo1d ago
extension
$ pi install npm:@senad-d/guardme

zob-harness

A governed Agent Factory for Pi: launch communicating agent teams, run tmux-backed factories, validate artifacts, and package repeatable workflows.

cgarrot1,874/mo1mo ago
extension
$ pi install npm:zob-harness

pi-ast-guard

基于 AST 的 Pi 代理安全防护扩展 — 解析 Bash 命令,拦截危险操作(继承自 pi-damage-control)

dsxbygzzl1,818/mo8d ago
package
$ pi install npm:pi-ast-guard

pi-multi-orchestrator

Pi control center for bounded 9Router model, pool, mission, quality, analytics, and safety workflows

mrrecoba1,726/mo1mo ago
package
$ pi install npm:pi-multi-orchestrator

@evoclock/pi-agentic-driver

Guardrail extensions for Agentic Driver: advisory review, bounded Herdr communication, and guarded worker lifecycle.

evoclock1,650/mo11h ago
extension
$ pi install npm:@evoclock/pi-agentic-driver

@cad0p/pi-steering-flags

Declarative flag-presence and flag-allowlist predicates for pi-steering rules. First official external plugin.

cad0p1,375/mo28d ago
package
$ pi install npm:@cad0p/pi-steering-flags

@everyx/pi-ui

Shared TUI building blocks for pi extensions — spinner, card, status widget, view, ticker, context stash, width safety, preview runtime.

every.x1,337/mo9d ago
package
$ pi install npm:@everyx/pi-ui

pi-agent-foreman

Send Pi agents back to work when they stop before the job is done.

alexshpunt1,323/mo3d ago
extension
$ pi install npm:pi-agent-foreman

@diegopetrucci/pi-extensions

A collection of pi extensions and skills for annotation UIs, context management, workflow audits, contrarian review, review-comment triage, notifications, brrr push alerts, safety guards, GitHub research, repo-local knowledge, todos, tool rendering, model

diegopetrucci1,267/mo12d ago
package
$ pi install npm:@diegopetrucci/pi-extensions

@cad0p/pi-napkin

📜 Napkin integration for pi — vault context, knowledge tools, and automatic distillation with git-worktree concurrency safety

cad0p1,241/mo28d ago
extension
$ pi install npm:@cad0p/pi-napkin

@johansja/pi-permission-gate

LLM-powered safety gate for pi: classifies bash and MCP tool calls by risk before execution, with CWD-aware judgments.

johansja1,183/mo14d ago
package
$ pi install npm:@johansja/pi-permission-gate

@pify/yolo

One toggle to auto-approve everything, with an undo trail: three-tier bash guard, file pre-images, fail-closed everywhere

hypnguyen12091,142/mo4d ago
extension
$ pi install npm:@pify/yolo

pi-loop-police

Pi extension: detects and interrupts infinite thinking-block and tool-call loops in real time before they exhaust your context window.

ncsebaxzero1,103/mo1mo ago
extension
$ pi install npm:pi-loop-police

@pify/goal

Pin a session goal and keep the agent anchored to it: settled-idle continuation, safety limits, evidence-gated completion

hypnguyen1209931/mo4d ago
extension
$ pi install npm:@pify/goal

@vanillagreen/pi-hooks

The carrier that runs kendex's hooks under Pi: it dispatches the rendered kendex/hooks.json registry on every listener kendex maps a hook event onto, so a PreToolUse, PostToolUse, Stop, TaskCompleted or SessionStart hook fires, the bash guards kendex rend

vanillagreencom782/mo17h ago
package
$ pi install npm:@vanillagreen/pi-hooks

pi-safety-guards

Configurable Bash safety rules with per-rule actions and custom matchers for Pi

maplezzk670/mo3h ago
extension
$ pi install npm:pi-safety-guards

@pify/worktree

Safe git-worktree management for pi: create/list/merge/remove with safety rails, no shell interpolation, Windows-first, zero tmux

hypnguyen1209463/mo4d ago
extension
$ pi install npm:@pify/worktree

@bacnh85/pi-windows-tools

Pi extension for Windows-native tool manipulation — shell profiles, path conversion, command execution, WSL bridge, safety policy, and developer tool discovery.

bacnh85369/mo7h ago
extension
$ pi install npm:@bacnh85/pi-windows-tools

pi-edit-approval

Pi extension: confirm before write/edit with profiles, diff preview, and persistent allow/deny memory. Reads always allowed.

shawnma342/mo1mo ago
extension
$ pi install npm:pi-edit-approval

oxcgen

Oxc/Oxlint generation adapter with safety corrections and explicit validation gates; not production-ready.

jmclaughlin724300/mo2d ago
package
$ pi install npm:oxcgen

pi-git-safeguard

pi extension: gate git/gh write operations (commit, push, PRs, and more) behind interactive user approval.

saif71284/mo15d ago
extension
$ pi install npm:pi-git-safeguard

@cad0p/pi-steering-commit-format

Commit-message format validation predicates for pi-steering. Bundled formats: Conventional Commits 1.0.0 (Angular preset type allowlist), bracketed JIRA-style ticket references. Extensible via `commitFormatFactory`.

cad0p228/mo1mo ago
package
$ pi install npm:@cad0p/pi-steering-commit-format

pi-supersafety

When the example safety extensions don't cover what you need, this should! Simple with approval flow and windows sandbox capability (with Sandboxie)

zenforic224/mo4mo ago
package
$ pi install npm:pi-supersafety

smart-approve

High-risk-only approval hook with LLM risk analysis, behavior detection, protected-path interception, and decision memory for oh-my-pi (OMP) and pi-agent.

mentalfl0w224/mo1mo ago
extension
$ pi install npm:smart-approve

pi-safety-net

Fail-open fork of cc-safety-net — blocks destructive git/filesystem commands, but defaults to fail-OPEN on broken/legacy config so the shell never bricks.

buihongduc132217/mo2mo ago
extension
$ pi install npm:pi-safety-net

pi-opa-net

OPA-backed bash command guard for the pi ecosystem — structured decision-output.v1 JSON, fail-open default, Claude Code hook protocol compatible. Agent-agnostic engine + CLI.

buihongduc132216/mo1mo ago
extension
$ pi install npm:pi-opa-net

@spences10/pi-sqlite-tools

SQLite safety workflow reminder that steers Pi agents to use gated mcp-sqlite-tools instead of raw sqlite3

spences10181/mo2mo ago
package
$ pi install npm:@spences10/pi-sqlite-tools

pi-delete-session

Powerful session deletion tool for Pi. Delete multiple sessions at once, grouped by project, with safety confirmations.

wpbasket170/mo5h ago
package
$ pi install npm:pi-delete-session

pi-strict-ask-mode

为 Pi 提供严格只读 /ask 模式,仅允许 read、grep、find、ls。

liushiyumathxjtu165/mo21d ago
extension
$ pi install npm:pi-strict-ask-mode

pi-guardian

Stateful automatic safety review for Pi tool calls

andersonbcdefg159/mo22d ago
extension
$ pi install npm:pi-guardian