grok-cli — security grade SAFE, quality 72/100

Security audit verdict: SAFE · quality 72/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by superagent-ai · Agent Tool · ★ 3.5k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is grok-cli safe to install? View the security audit →

About grok-cli

grok-cli: an open-source coding agent for the Grok API Disclaimer: This project is community-built, open-source, and not affiliated with, endorsed by, or sponsored by xAI Corp. "Grok" is a trademark of xAI Corp. This tool uses the publicly available Grok API. An open-source terminal coding agent that connects to xAI’s Grok API — real-time X search, web search, the full Grok model lineup, sub-agents on by default, remote control via Telegram (pair once, drive the agent from your phone while the CLI runs), and a terminal UI built with Bun and OpenTUI. https://github.com/user-attachments/assets/7ca4f6df-50ca-4e9c-91b2-d4abad5c66cb Install Alternative installs (requires Bun on PATH):

agentsaiclicodecoding-agentgrokxai

Quick Facts

Stars3,481
Forks422
LanguageTypeScript
CategoryAgent Tool
LicenseMIT
Quality Score72.2658469121197/100
Open Issues33
Last Updated2026-07-06
Created2025-07-14
Platformscli, node
Est. Tokens~18k

Compatible Skills

These tools work well together with grok-cli for enhanced workflows:

  • clawcodex — semantic(0.26)+complementary+rare_topics+same_lang+similar_pop+shared_platform (64%)
  • qwen-code — semantic(0.30)+complementary+same_lang+similar_pop+shared_platform (60%)
  • freestyle — semantic(0.28)+complementary+same_lang+similar_pop+shared_platform (60%)
  • klaatcode — semantic(0.25)+complementary+same_lang+similar_pop+shared_platform (59%)
  • pi-mcp-adapter — semantic(0.22)+complementary+same_lang+similar_pop+shared_platform (58%)

grok-cli alternative? Top 6 similar tools

Looking for a grok-cli alternative? If you're comparing grok-cli with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • ax by ax-llm · ⭐ 2.9k

    The pretty much "official" DSPy framework for Typescript

  • py-gpt by szczyglis-dev · ⭐ 1.9k

    Desktop AI Assistant powered by GPT-6, GPT-5, Gemini, Claude, Ollama, Grok, DeepSeek, Perplexity, chat, agents

  • BaseAI by CommandCodeAI · ⭐ 1.3k

    BaseAI — The Web AI Framework. The easiest way to build serverless autonomous AI agents with memory. Start bui

  • chat-js by FranciscoMoretti · ⭐ 1.2k

    Production-ready AI chat. Start here and make it your own. Formerly Sparka AI

  • awesome-ai-apps by Arindam200 · ⭐ 15.6k

    A collection of projects showcasing RAG, agents, workflows, and other AI use cases

  • valuecell by ValueCell-ai · ⭐ 11.0k

    ValueCell is a community-driven, multi-agent platform for financial applications.

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is grok-cli?

grok-cli is An open-source coding agent for the Grok API. It is categorized as a Agent Tool with 3.5k GitHub stars.

What programming language is grok-cli written in?

grok-cli is primarily written in TypeScript. It covers topics such as agents, ai, cli.

How do I install or use grok-cli?

You can find installation instructions and usage details in the grok-cli GitHub repository at github.com/superagent-ai/grok-cli. The project has 3.5k stars and 422 forks, indicating an active community.

What license does grok-cli use?

grok-cli is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to grok-cli?

The top alternatives to grok-cli on Agent Skills Hub include ax, py-gpt, BaseAI. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools