Skip to main content

pp-instacart

Enables users to manage Instacart carts via natural language commands, enhancing shopping efficiency and order history management.

Install this skill

or
93/100

Security score

The pp-instacart skill was audited on Jun 6, 2026 and we found 3 security issues across 2 threat categories. Review the findings below before installing.

Categories Tested

Security Issues

medium line 183

Access to hidden dotfiles in home directory

SourceSKILL.md
183Session lives at `~/.config/instacart/session.json` (0600).
low line 191

External URL reference

SourceSKILL.md
191- `instacart config set-address --id <uuid>` — derives coords from a known Instacart address ID via the cached `GetAddressById` op. Find the ID in the URL or a graphql variable on https://www.instacar
low line 276

External URL reference

SourceSKILL.md
2762. Open or reuse a tab at `https://www.instacart.com/store/account/orders`. If the dumper returns `profile_picker: true`, ask the user to pick a profile in the tab, then re-run.
Scanned on Jun 6, 2026
View Security Dashboard
Installation guide →