Home Assistant owner avatar

Home Assistant

Alert level: High

Control Home Assistant smart home devices, run automations, and receive webhook events. Use when controlling lights, switches, climate, scenes, scripts, or any HA entity. Supports bidirectional communication via REST API (outbound) and webhooks (inbound triggers from HA automations).

Locality:Hybrid
Data access:Sensitive
Actions:Write
Installs 7Downloads 1481Stars 3Updated 229h ago

Why this rating

Deterministic checks triggered by the tool capabilities and evidence.

  • Locality: Hybrid

    Connects to user Home Assistant endpoints and webhook integrations.

  • Data access: Sensitive

    Accesses live home-device state and automation metadata.

  • Action surface: Write

    Can turn devices/scripts/scenes on/off and trigger automations.

Best practices

Follow these steps to reduce risk when using this skill.

  • Use least-privileged Home Assistant tokens scoped to required services.
  • Restrict webhook exposure and rotate secrets if endpoints are leaked.
  • Require confirmation before high-impact automations affecting physical devices.

Evidence links

Public sources backing the indicator assignments.

Always be careful when navigating away from the website.

Max-risk rule

If any capability reaches a higher level, the entire indicator level bumps up to keep ratings deterministic and easy to scan.