This skill is mainly a Xiaomi speaker setup guide, but it includes high-risk instructions for bypassing Xiaomi account security using browser cookies and cached tokens.
Review carefully before installing. Prefer supported Xiaomi login and recovery flows; do not copy browser cookies into scripts unless you fully understand the account-takeover risk. Use a dedicated Xiaomi account if possible, protect .env/.migpt.js/.mi.json, keep them out of git, restrict file permissions, rotate exposed keys or sessions, review any node_modules patches, and understand that voice transcripts may be sent to your chosen LLM provider.