Security audit
Pilot Service Agents Weather
Security checks for vulnerabilities and agentic risk
Overview
This is a disclosed weather-data helper that uses Pilot Protocol agents to fetch forecasts and related environmental data, with no hidden code or unrelated authority found.
Before installing, make sure you trust Pilot Protocol, the pilotctl binary, and the network 9 agents you query. Weather requests may disclose coordinates or location interests to remote services, but that behavior is clearly tied to the skill's purpose.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
