# pi-grok-build-acp

A Pi extension that runs the official Grok Build binary through `grok agent stdio` and exposes it as `grok-build/grok-4.5`.

## Security properties

- Uses the official Grok Build OAuth session and ACP process.
- Forces `--permission-mode default`.
- Never passes `--always-approve`.
- Bridges `session/request_permission` into Pi's UI.
- Rejects tool permissions when Pi has no interactive UI.
- Does not read or copy Grok OAuth credentials.

## Requirements

```bash
curl -fsSL https://x.ai/cli/install.sh | bash
grok login
```

## Install

```bash
pi install npm:pi-grok-build-acp
```

Then select `grok-build/grok-4.5` with `/model`.

Commands:

```text
/grok-build status
/grok-build restart
```

In print or JSON mode, Grok tool requests are rejected because no interactive approval UI is available.
