pi

pi is an agent for coding agents from a5c-ai/babysitter. It costs 0 tokens per session (269 once invoked), scanned A, original, MIT.

An adapter for the Pi coding-agent command-line tool, including installation, authentication, prompts, sessions, and MCP connections. Pi is a terminal program that can use an AI model to answer prompts and call tools.

In plain words
What is it for?
Use it to install and run Pi, pass a prompt or model choice, inspect session files, and connect Pi to an MCP server.
Why use it?
It gives a consistent way to run Pi and read its saved session events. It also makes its limits clear, such as no image or file input and no parallel tool calls.

Agent

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/a5c-ai/babysitter/pi
Clone the repo
git clone --depth 1 https://github.com/a5c-ai/babysitter

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for pi

README.md
[![agentmods](https://agentmods.dev/badge/agents/a5c-ai/babysitter/pi.svg)](https://agentmods.dev/agents/a5c-ai/babysitter/pi)
Your own site
<a href="https://agentmods.dev/agents/a5c-ai/babysitter/pi"><img src="https://agentmods.dev/badge/agents/a5c-ai/babysitter/pi.svg" alt="Measured on agentmods" height="20"></a>
Per session 0 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 269 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00000 $0.00269
Opus 5 $0.00000 $0.00134
Sonnet 5 $0.00000 $0.00054
Haiku 4.5 $0.00000 $0.00027

Measured 4d ago against content hash 58bffbca0efb, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

pi scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

docs/adapters/reference/agents/pi.md · 58 lines

What it actually says

Pi

Adapter for the Pi agent CLI.

Install

adapters install pi

Supported on macOS, Linux and Windows.

Auth

  • Provider API keys — provider-specific env vars.

Config file: ~/.pi/agent/settings.json.

Minimal run

adapters run pi --prompt "Draft a commit message"

Notable flags

  • --model <id> — default default.
  • --prompt <text> — forwarded prompt.

Session files

  • Location: ~/.pi/agent/sessions/*.jsonl
  • JSONL; parses text, message, and tool_call events.

Plugins

Plugin support: no. Use MCP servers for extensibility.

MCP Servers

adapters mcp install pi <mcp-server>
adapters mcp list pi

Registry: https://modelcontextprotocol.io

Capabilities

Tool calling (not parallel), tool-call streaming, text streaming, 128k context.

Known limitations

  • No parallel tool calls.
  • No thinking mode, no JSON mode, no structured output.
  • No image, no file input.
  • Approval mode is not wired through to CLI flags.
  • Global config only.
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 58 lines · 0 tokens per session scan A 58bffbca0efb

Subscribe to this mod's changes

pi is an agent published in the GitHub repository a5c-ai/babysitter (1,765 stars, last pushed today), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 269 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.

Related

Other agents, from other repositories

tech-lead

Technical lead agent – PR review/approval/merge, blocker resolution, and architecture/trade-off review aligned with Jira outcomes.

agents-universe/agents-universe · 25 tokens

external-system-integration-expert

你负责把当前项目与外部 API、API 网关及业务系统安全地连接起来:识别集成边界、整理接口与环境差异、验证请求和响应、定位认证或数据契约问题。.

agents-universe/agents-universe · 33 tokens

rn-code-reviewer

Reviews React Native implementation for bugs, logic errors, RN-specific convention violations, and testability issues. Uses confidence-based filtering to report only high-priority issues that truly matter. Triggers: "review this code", "check for bugs", "review the implementation", "are there any issues", "check…

Lykhoyda/rn-dev-agent · 234 tokens

progressive-disclosure-source

This file is the source of truth for the structure and maintenance approach.

martin-francois/symphony-trello · 0 tokens

static-analysis

Which static analyzers this repository uses, how to triage and suppress findings, and how automation config (Renovate, pinned tool versions, GitHub Actions) should be kept. Java code style itself lives in Java style & design preferences.

martin-francois/symphony-trello · 0 tokens

kobe

"What could break?" — Use this agent for quality review, risk assessment, production readiness checks, and finding edge cases. Kobe is the Relentless Quality & Risk Enforcer — he finds what everyone else missed and can fix critical bugs directly. Use via /team for orchestrated workflows, or directly for standalone…

bondarewicz/dreamteam · 251 tokens