kimi-cli

PyPI

Is kimi-cli safe to use?

Based on the latest brin safety scan, no vulnerabilities or threats were detected for kimi-cli v1.12.0. Trust score: 55/100. No known CVE vulnerabilities, no detected threat patterns, and no suspicious capabilities identified. This is an automated, point-in-time assessment.

Install (safety-checked)

kimi-cli Passed Security Checks

No security concerns detected

clean
CVEs

0

Threats

0

Install Scripts

0

No Concerns Detected

No security concerns detected in the latest brin assessment. This is an automated, point-in-time evaluation — security posture may change.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

kimi-cli Capabilities & Permissions

What kimi-cli can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

127.0.0.1api.kimi.comapi.moonshot.aiapi.moonshot.cnauth.kimi.comcdn.kimi.comgithub.commcp.context7.commcp.linear.appmoonshotai.github.io+2 more
Protocols: http, https, tcp, udp

Filesystem Access

Reads and writes to the filesystem.

.env (r).env (rw).env (rw).env (rw).env (rw)/tmp/ (rw)__pycache__ (rw)/usr/ (rw)+3 more

Process Spawning

This package can spawn child processes.

Environment Variables

Accesses the following environment variables.

ENV_ALLOWED_ORIGINSENV_ENFORCE_ORIGINENV_LAN_ONLYENV_MAX_PUBLIC_PATH_DEPTHENV_RESTRICT_SENSITIVE_APISENV_SESSION_TOKENKIMI_API_KEYKIMI_BASE_URLKIMI_CODE_BASE_URLKIMI_CODE_OAUTH_HOST+15 more

Native Modules

Contains native code that runs outside the JavaScript sandbox.

ctypes

AGENTS.md for kimi-cli

Good instructions lead to good results. brin adds kimi-cli documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

kimi-cli Documentation & Source Code

For the full kimi-cli README, API documentation, and source code, visit the official package registry.

Frequently asked questions about kimi-cli safety

Weekly Downloads

67.6K

Version

1.12.0

License

MIT

Last Scanned

Feb 11, 2026

Trust Score

55/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: 127.0.0.1, api.kimi.com, api.moonshot.ai...

Filesystem

Reads & Writes files

Process

Spawns child processes

Environment

Accesses: ENV_ALLOWED_ORIGINS, ENV_ENFORCE_ORIGIN, ENV_LAN_ONLY...

Native

Contains native modules

Is kimi-cli Safe? | PyPI Safety Scan - brin