Pilot Http Proxy
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill's requirements and runtime instructions are coherent with its stated purpose (routing HTTP via Pilot Protocol tunnels), but it can expose local HTTP services to remote networks so you should verify the Pilot tooling and be careful what you map.
This skill is internally consistent for exposing and routing HTTP services over the Pilot network, but you should only install it if you trust the pilotctl binary and the Pilot Protocol network operator. Before using: (1) verify pilotctl came from a trusted source and check signatures/hashes, (2) avoid mapping sensitive internal hosts or admin endpoints (you will be making them reachable over the overlay), (3) be aware sudo/root may be needed for low-numbered ports, and (4) review Pilot Protocol documentation and the pilot-protocol skill provenance. If you are unsure about the source (the registry shows 'unknown'), treat the skill as higher risk and prefer running pilotctl manually in a controlled environment rather than granting an agent automated access.
SkillSpector
SkillSpector findings are pending for this release.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
