pilot-shell — security grade SAFE, quality 69/100

Security audit verdict: SAFE · quality 69/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by maxritter · MCP Server · ★ 2.1k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is pilot-shell safe to install? View the security audit →

About pilot-shell

The professional development environment for Claude Code Claude Code is powerful. Pilot Shell makes it reliable. Start a task, grab a coffee, come back to production-grade code. Tests enforced. Context preserved. Quality automated. ⭐ Star this repo · 🌐 Website · 🔔 Follow for updates · 📋 Changelog · 📄 License Works on macOS, Linux, and Windows (WSL2). Why I Built This Claude Code writes code fast. But without structure, it skips tests

agent-skillsagentic-engineeringai-codinganthropicclaude-codecode-qualitycode-reviewcodexcodex-clicoding-agents

Quick Facts

Stars2,072
Forks177
LanguageJavaScript
CategoryMCP Server
Quality Score69.3602380998718/100
Open Issues1
Last Updated2026-09-18
Created2025-10-18
Platformsclaude-code, cli, codex, mcp, node
Est. Tokens~21k

Compatible Skills

These tools work well together with pilot-shell for enhanced workflows:

  • claudecodeui — semantic(0.29)+complementary+shared_fw(anthropic)+rare_topics+same_lang+similar_pop+shared_platform (68%)
  • claude-code-settings — semantic(0.31)+complementary+shared_fw(anthropic)+rare_topics+similar_pop+shared_platform (63%)
  • cc-sdd — semantic(0.18)+complementary+rare_topics+same_lang+similar_pop+shared_platform (61%)
  • awesome-claude — semantic(0.18)+complementary+shared_fw(anthropic)+same_lang+similar_pop+shared_platform (59%)
  • Codeman — semantic(0.25)+complementary+rare_topics+same_lang+similar_pop+shared_platform (58%)

pilot-shell alternative? Top 6 similar tools

Looking for a pilot-shell alternative? If you're comparing pilot-shell with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • ai-devkit by codeaholicguy · ⭐ 1.6k

    The control plane for AI coding agents.

  • autoprompt-skill by Spielewoy · ⭐ 1.3k

    Autoprompt is a coding-agent skill that cuts failures by 45% on agentic coding tasks.

  • claude-code-skills by levnikolaevich · ⭐ 564

    Help your AI agent finish the job: solve the right problem, keep changes focused, and show what was verified.

  • quint-code by m0n0x41d · ⭐ 1.3k

    Engineering decisions engine that know when they're stale. Frame, compare, decide — with evidence decay and p

  • claude-code-workflows by shinpr · ⭐ 683

    Development workflows for Claude Code that keep broad exploration focused on the outcome you approved.

  • awesome-agent-skills by heilcheng · ⭐ 6.2k

    Tutorials, Guides and Agent Skills Directories

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular JavaScript Agent Tools

Frequently Asked Questions

What is pilot-shell?

pilot-shell is Professional context and harness engineering for Claude Code and OpenAI Codex. Build production-grade software with spec-driven development, TDD, persistent memory, quality gates, code intelligence, h. It is categorized as a MCP Server with 2.1k GitHub stars.

What programming language is pilot-shell written in?

pilot-shell is primarily written in JavaScript. It covers topics such as agent-skills, agentic-engineering, ai-coding.

How do I install or use pilot-shell?

You can find installation instructions and usage details in the pilot-shell GitHub repository at github.com/maxritter/pilot-shell. The project has 2.1k stars and 177 forks, indicating an active community.

What are the best alternatives to pilot-shell?

The top alternatives to pilot-shell on Agent Skills Hub include ai-devkit, autoprompt-skill, claude-code-skills. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools