Pilot Chat

Security checks across static analysis, malware telemetry, and agentic risk

Overview

The skill's stated purpose (1:1 agent messaging) lines up with its runtime instructions (calls to pilotctl); the package is instruction-only and requests no credentials, but there are small documentation/instruction inconsistencies you should be aware of.

This skill appears to do what it says: it runs pilotctl to exchange messages and asks for no credentials. Before installing: (1) ensure the pilotctl binary you have is the official/trusted implementation (binary is what actually runs), (2) verify the 'pilot-protocol' skill is available if you need the full integration (the SKILL.md mentions it but the metadata does not declare it), (3) add jq to your environment if you want the example workflow to work or edit the examples to avoid jq, and (4) be aware that any data you send through this skill will be transmitted to the specified agent/host — avoid sending secrets unless you trust the recipient. The skill is AGPL-3.0 licensed; review that license if redistribution or linking matters to you.

SkillSpector

By NVIDIA

SkillSpector findings are pending for this release.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal