No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by dannote · Agent Tool · ★ 51
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is dot-pi safe to install? View the security audit →
dot-pi A curated Pi package with extensions, skills, prompt shortcuts, and rules. Install Install Pi first: Then install this package: For the recommended end-user setup, run the bootstrap script. Safer review-first flow: Convenience one-liner: The bootstrap is a POSIX script for macOS, Linux, and WSL. It installs Pi if missing, installs dot-pi with , offers , and explains optional companion packages (, , , and on macOS) before prompting. defaults to yes when Elixir or Mix is detected; other companions default to no. Headless/non-interactive Linux needs Node.js 22.19.0+ and npm available before Pi can install. Check with and ; install Node 22+ with your preferred Node manager or distro setup if needed. Use non-interactive defaults with: Useful bootstrap options: bash sh install.sh --help sh install.sh --local # install dot-pi into the current project sh install.sh --w
| Stars | 51 |
| Forks | 4 |
| Language | TypeScript |
| Category | Agent Tool |
| License | MIT |
| Quality Score | 64.6210678370143/100 |
| Last Updated | 2026-09-04 |
| Created | 2026-01-13 |
| Platforms | browser, node |
| Est. Tokens | ~20k |
These tools work well together with dot-pi for enhanced workflows:
Looking for a dot-pi alternative? If you're comparing dot-pi with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Composable Pi coding agent with MCP, LSP, agent chains, prompt presets, and local eval telemetry
pi extension that exposes agent-browser as a native tool for browser automation
A standalone BMAD module that transforms code repositories, documentation websites, and developer discourse in
Compact tool call rendering, diff visualization, and output truncation extension for Pi coding agent. Hides, c
Pi extension that optimizes RTK command rewriting and tool output compaction for the coding agent.
📼 Declarative AI agent environment manager, written in Rust
Explore other popular agent tool tools:
dot-pi is Curated Pi package with extensions, skills, prompt shortcuts, and rules. It is categorized as a Agent Tool with 51 GitHub stars.
dot-pi is primarily written in TypeScript. It covers topics such as agent-skills, ast-grep, browser-automation.
You can find installation instructions and usage details in the dot-pi GitHub repository at github.com/dannote/dot-pi. The project has 51 stars and 4 forks, indicating an active community.
dot-pi is released under the MIT license, making it free to use and modify according to the license terms.
The top alternatives to dot-pi on Agent Skills Hub include my-pi, pi-agent-browser-native, bmad-module-skill-forge. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: