amelnagdy/pi-delegate
>- Delegate a coding task to the Pi coding agent CLI (`pi`) as a background implementer, then review its diff and land it yourself. Use this whenever the user wants to delegate implementation work to Pi - phrasings like "have Pi implement X", "delegate this to pi", "run it through Pi", or "use pi to implement/fix/refactor" - or wants to run a queue of coding tasks through Pi while staying the reviewer. DO NOT USE for tasks small enough to do inline, or when the user wants the code written directly without delegating.
npx skills add https://github.com/amElnagdy/delegate-skills --skill pi-delegate
You are the orchestrator. Delegate a bounded coding task to a separate implementer - the Pi
coding agent CLI - then review what it produced and land it yourself. You write the brief and own
the judgment; the implementer makes changes in its own session; you verify and commit.
The loop needs only a shell command and file access, so any comparable orchestrator can drive it.
pi CLI is not installed or authenticated.--read-onlyrestricts the tool surface, but a write-capable run executes without prompts.
npm install -g @earendil-works/pi-coding-agent./login inside pi for a subscription provider, or an API-key environmentvariable / pi's auth file for an API-key provider.
pi --version succeeds.--cd at, the target git repository.Omit --model to use pi's configured default. To pick another, choose from pi --list-models
and pass an explicit id or pattern like <provider>/<model-id> or sonnet:high. The relay
accepts letters, digits, and . _ : / - only (the value reaches a shell on Windows), so glob
patterns with * are not forwarded.
Run these five steps per task. Steps 1, 4, and 5 require judgment; 2 and 3 are mechanical.
Pi sees only the text you send plus what it can inspect in the workspace - no chat history or
shared context. Include the goal, current state, what to change, what to leave untouched, the
project's actual gates, and a report contract. Tell pi not to commit. Keep one task per brief.
Pi auto-loads AGENTS.md/CLAUDE.md context files from the workspace and its parents, so repo
instructions reach it without inlining. See
references/writing-the-brief.md.
Use the bundled relay. It pipes the brief to pi --mode json on stdin, captures the JSON event
stream, and writes result.json. (<skill-dir> is the installed folder containing this
SKILL.md.)
node "<skill-dir>/scripts/relay.mjs" --brief brief.txt --cd /path/to/repo
# choose a model: add --model <id from pi --list-models>
# choose a provider: add --provider <name>
# read-only run (review/diagnosis): add --read-only
# trust project .pi resources: add --approve
# resume the most recent session: add --resume-last (delta brief only)
# resume a specific session: add --session <id> (delta brief only)
# hard time limit (watchdog): add --timeout 2h (the 30m default suits short runs; implementation briefs routinely need 1-2h)
# see all options: node .../relay.mjs --help
The child process's cwd pins the workspace. The relay writes artifacts under the system temp dir
by default and never commits. See references/dispatch-and-poll.md.
The relay blocks until pi finishes. Run it with the orchestrator's background-command facility,
or background it in the shell and poll for result.json. A pre-run usage error exits 2 and writes
no result; a missing pi exits 127 and writes status: "pi_unavailable".
Trust process state and the working tree over a progress display. Completion means the process
exited and result.json exists. Pi's full report is the finalMessage field in result.json
(also printed in full on stdout between the report markers).
Treat pi's final message and gate claims as claims:
touchedFiles.See references/review-and-land.md.
The implementer edits the working tree; the orchestrator commits. Commit only after the gates
pass and the diff holds. If rework is needed, send a delta brief with --resume-last or
--session <id>, then review again.
Pi has no sandbox and no permission modes. A default headless run reads, writes, edits, and
executes shell commands with no prompts - the controls are:
--read-only restricts pi's callable tools to --tools read,grep,find,ls across built-in,extension, and custom tools. Installed extension code still runs with the user's host permissions.
--no-approve by default, so project .pi settings, extensions, and skillsstay untrusted. --approve is the explicit opt-in for a repository the user trusts.
touchedFiles and the diff are the record of what changed. Inspect them after every run.Delegation is something the human opts into. Once they have ("run this queue", "proceed"),
committing verified, gate-passing work is the agreed contract. Two limits remain: **surface, don't
absorb** (report pi's design decisions, defensible-but-unasked turns, and non-blocking nitpicks)
and stop for scope changes (if correct completion needs going beyond the brief, ask instead of
expanding the mandate). See references/review-and-land.md.
real gates, stdin delivery, and delta briefs.
result.json, polling, and failure recovery.
boundary, and rework through pi sessions.
constraint carry-forward, progress tracking, and the final coherence pass.
Take amelnagdy/pi-delegate from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.
The instructions reference npm.
Without those the skill loads but fails at the first command.