No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by sky-valley · Agent Tool · ★ 53
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is pi safe to install? View the security audit →
pi (Go) A pure-Go (golang) port of pi — the unified multi-provider LLM API, the agent loop, and the CLI — running natively in Go with no Node.js runtime. Looking for "pi for Go" / a "pi-go"? This is it. A pure-Go port of pi, Mario Zechner's agent harness and self-extensible coding agent — built so heavy Go shops can run pi natively without wrapping a Node.js process. It mirrors pi's architecture as faithful, idiomatic Go: the same unified streaming protocol, the same agent loop semantics, the same tool contracts, and the same built-in coding tools — leaning into Go's strengths (channels for the event stream, for cancellation, goroutines for parallel tool execution). Layout The
| Stars | 53 |
| Forks | 4 |
| Language | Go |
| Category | Agent Tool |
| License | MIT |
| Quality Score | 64.263665785109/100 |
| Last Updated | 2026-09-18 |
| Created | 2026-06-09 |
| Platforms | claude-code, gemini, go |
| Est. Tokens | ~17k |
These tools work well together with pi for enhanced workflows:
Looking for a pi alternative? If you're comparing pi with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Just another desktop client for OpenCode 2. Manage projects, sessions, parallel agents, requests, and changes
An agent framework for Go with graph-aware memory, UTCP-native tools, and multi-agent orchestration. Built for
AI-powered JSON translation tool with agentic reflection using OpenAI, Anthropic, and Gemini APIs
Turn a one-line idea into a branch with tested, reviewed, committed code. The brainstorm-to-commit pipeline fo
Persistent memory for AI coding agents
📼 Declarative AI agent environment manager, written in Rust
Explore other popular agent tool tools:
pi is A pure-Go port of pi (earendil-works/pi) — the pi-ai unified multi-provider LLM API, pi-agent-core agent loop, and pi-coding-agent, native in Go with no Node.js runtime. Anthropic/OpenAI/Google, 999-m. It is categorized as a Agent Tool with 53 GitHub stars.
pi is primarily written in Go. It covers topics such as agent-harness, ai-agent, ai-coding-agent.
You can find installation instructions and usage details in the pi GitHub repository at github.com/sky-valley/pi. The project has 53 stars and 4 forks, indicating an active community.
pi is released under the MIT license, making it free to use and modify according to the license terms.
The top alternatives to pi on Agent Skills Hub include palot, go-agent, jta. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: