Pilot Directory
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill is internally consistent with its purpose (building a local directory of peers) and is instruction-only; the main issue is a small mismatch in declared dependencies (jq is used but not declared).
This skill appears to do what it says: run pilotctl commands, collect JSON metadata, and save it locally. Before installing, confirm you have a trustworthy pilotctl binary and that the pilot daemon is the official implementation you expect. Note the SKILL.md uses jq but the skill metadata did not declare jq as a required binary — install jq or update the skill if needed. Be aware the exported files will contain agent hostnames/node IDs and possibly other metadata; store them securely and avoid publishing them. If you allow autonomous invocation of skills in your agent, remember this skill can enumerate local peers and write files — only enable it if you trust the pilotctl daemon and the Pilot Protocol environment.
SkillSpector
SkillSpector findings are pending for this release.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
