Agent skill

Unifly

by hyperb1iss in hyperb1iss/unifly

This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies"…

Apache-2.0Auto-check passedDevOps & Cloud

Install Unifly

skills CLI
$ npx skills add hyperb1iss/unifly --skill unifly -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install hyperb1iss/unifly unifly --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/hyperb1iss/unifly.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/unifly .claude/skills/unifly && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
unifly
GitHub stars
264
Token cost
~7k tokens
SKILL.md length
1,601 words
Files
15 (incl. references)
Skills in repo
1
Repo updated
First seen
Licence
Apache-2.0

At a glance

This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies"…

  • Works in 7 steps: Default list limit is 25 (a few commands… → Environment variables use the UNIFI_… → yes / -y skips confirmation prompts for… → …
  • Asks to manage UniFi devices
  • SKILL.md covers Prerequisites, Authentication Modes, Command Inventory and Output Formats, plus 4 more sections
  • Calls jq, brew and cargo; needs UNIFI_API_KEY and UNIFI_PASSWORD

What it does

Unifly is an agent skill from hyperb1iss/unifly. This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies", "create a NAT rule", "set up port forwarding", "configure masquerade NAT", "add DNS records", "manage traffic matching lists", "create DHCP reservations", "list DHCP reservations", "block a client", "kick a client", "find a client by IP or name", "adopt a device", "restart a UniFi device", "cycle a PoE port", "upgrade device…

Its SKILL.md is about 7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 16 other files, including reference files (for example `examples/firewall-block-iot.json`, `examples/nat-masquerade.json` and `examples/nat-port-forward.json`).

It sits in DevOps & Cloud, covering Cloud networking. It works with Rust. The repository describes itself as: 🌐 Elegant UniFi network management CLI & TUI - for humans and agents. The licence is Apache-2.0.

When your agent uses it

  • Asks to manage UniFi devices
  • Configure UniFi networks
  • Provision an SSID
  • Create firewall rules

Example prompts

  • “manage UniFi devices”
  • “configure UniFi networks”
  • “create a VLAN”
  • “/unifly”

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. Default list limit is 25 (a few commands default higher: hotspot,
  2. Environment variables use the UNIFI_ prefix, not UNIFLY_. Relevant
  3. yes / -y skips confirmation prompts for mutations. Required for
  4. API key mode covers most commands on UniFi OS, including Session API
  5. Cloud support is Integration-only. unifly cloud ... talks to
  6. Exit codes are meaningful. 0 on success, non-zero on error. Capture
  7. Create commands print the created entity on stdout in the chosen

What it can do on your machine

Read from SKILL.md and the folder at commit b565654. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • jq
    • brew
    • cargo

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • UNIFI_API_KEY
    • UNIFI_PASSWORD

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Unifly loads about 7k tokens when it runs, and up to ~24k if it reads all its reference files. Until then it costs about 256 tokens; SKILL.md has 1,601 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~256
When it runs · the whole SKILL.md, loaded when a task matches
~7k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~24k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from hyperb1iss/unifly at commit b565654, republished under its Apache-2.0 licence (© hyperb1iss). 1,601 words, ~6,998 tokens.

Download SKILL.mdSave it as .claude/skills/unifly/SKILL.md (or your agent's skills folder). This skill also uses 14 other files; get the full folder from GitHub.
name
unifly
description
This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies", "create a NAT rule", "set up port forwarding", "configure masquerade NAT", "add DNS records", "manage traffic matching lists", "create DHCP reservations", "list DHCP reservations", "block a client", "kick a client", "find a client by IP or name", "adopt a device", "restart a UniFi device", "cycle a PoE port", "upgrade device firmware", "run a speed test", "stream UniFi events", "watch real-time events", "query UniFi stats", "analyze DPI traffic", "enable DPI", "generate hotspot vouchers", "show network topology", "audit firewall policies", "create a backup", "call the raw UniFi API", "check network health", or any task involving UniFi network infrastructure management via the unifly CLI. Also triggers on mentions of unifly, UniFi, Ubiquiti, UDM, UCG, USG, USW, UAP, UXG, UNVR, U6, U7, or UniFi controller operations.
version
0.10.0

unifly: UniFi Network Management

unifly is a Rust CLI for managing Ubiquiti UniFi network infrastructure. It unifies the modern Integration API (REST, API key), the Session API (cookie plus CSRF), and Site Manager cloud APIs behind a single coherent interface, plus real-time WebSocket event streaming. 28 top-level commands cover devices and switch port config-as-code, clients, networks, WiFi, firewall policies, zones, and groups, NAT policies, ACLs, DNS, traffic matching lists, hotspot vouchers, DPI, stats, backups, the full VPN surface, site settings, cloud fleet queries, and a raw API escape hatch.

Unique capabilities worth leading with when the user's task suits them:

  • Dual-API enrichment merges Integration and Session data (e.g. client bytes, hostnames, uplink MACs only exist in the Session API; configuration CRUD only exists in Integration). On UniFi OS, API key mode can already reach session HTTP; Hybrid adds the WebSocket session for live monitoring.
  • Real-time event streaming via unifly events watch over WebSocket.
  • Firewall policy reordering via reorder --get / reorder --set for deterministic, round-trippable ordering edits.
  • unifly api raw passthrough for endpoints unifly does not wrap.
  • Multi-profile (-p home, -p office) for managing multiple controllers from one command line.

Prerequisites

Verify availability before running any command:

bash
command -v unifly >/dev/null 2>&1 && unifly --version || echo "unifly not installed"

If unifly is not installed, prefer brew install hyperb1iss/tap/unifly on macOS or cargo install --git https://github.com/hyperb1iss/unifly.git unifly elsewhere. After install, run unifly config init for a local controller or unifly config cloud-setup for Site Manager. See examples/config.toml for manual configuration.

Authentication Modes

unifly supports four modes. API key mode is enough for most HTTP automation on UniFi OS controllers. Choose Hybrid when the task needs live WebSocket features (events watch) or you want maximum compatibility.

ModeCredentialsWhat It Unlocks
integrationAPI keyIntegration API plus session HTTP on UniFi OS: CRUD, device commands, stats, reservations, admin, event list
sessionUsername + passwordSession HTTP + WebSocket only: events watch, stats, device commands, DPI control, admin, backups, NAT policies, firewall groups, switch port config-as-code, site settings
hybridAPI key + username/passEverything above, including session WebSocket plus enriched records with maximum controller compatibility
cloudSite Manager API keyConnector-routed Integration CRUD plus unifly cloud fleet commands against api.ui.com

Session WebSocket still rejects API keys, so events watch needs session or hybrid. Cloud mode does not expose Session API endpoints or WebSocket streaming.

For the complete command-to-API gate matrix (which commands require which auth mode), consult references/concepts.md.

Command Inventory

All commands follow unifly [global-flags] <command> <action> [args].

CommandAliasesActions
devicesdev, dlist, get, adopt, remove, restart, locate, port-cycle, ports, ports-export, port-set, stats, pending, upgrade, provision, speedtest, tags
clientscllist, find, get, roams, wifi, authorize, unauthorize, block, unblock, kick, forget, reservations (res), set-ip, remove-ip
cloudhosts [get], sites, switch, devices, isp [query], sdwan [get, status]
networksnet, nlist, get, create, update, delete, refs
wifiwlist, get, neighbors, channels, create, update, delete
firewallfwpolicies {list, get, create, update, patch, delete, reorder}, zones {list, get, create, update, delete}, groups {list, get, create, update, delete}
natpolicies {list, get, create, update, delete}
acllist, get, create, update, delete, reorder
dnslist, get, create, update, delete
traffic-listslist, get, create, update, delete
hotspotlist, get, create, delete, purge
eventslist, watch
alarmslist, archive, archive-all
statssite, device, client, gateway, dpi
dpiapps, categories, status, enable, disable
topologytopo(no subcommands)
systemsysinfo, health, sysinfo, backup {create, list, download, delete}, reboot, poweroff
settingslist, get, set, export
siteslist, create, delete
adminlist, invite, revoke, update
wanslist
vpnservers [get], tunnels [get], status, health, site-to-site {list, get, create, update, delete}, remote-access {list, get, create, update, suggest-port, download-config, delete}, clients {list, get, create, update, delete}, connections {list, get, restart}, peers {list, get, create, update, delete, subnets}, magic-site-to-site {list, get}, settings {list, get, set, patch}
radiusprofiles
countries(no subcommands)
apiRaw API passthrough (GET/POST/PUT/PATCH/DELETE any path)
configinit, cloud-setup, show, set, profiles, use, set-password, theme
tui(no subcommands)
completionsbash, zsh, fish, powershell, elvish

For flag details and gotchas, consult references/commands.md. Every entity command accepts --help at runtime as the authoritative reference.

Output Formats

All list and get commands accept --output / -o:

FormatFlagUse Case
table-o tableHuman display (default)
json-o jsonAgent processing, pipe to jq
json-compact-o json-compactSingle-line JSON for scripting
yaml-o yamlConfig file output
plain-o plainOne ID per line for xargs pipelines

Default for agent use: -o json. Emit structured output, pipe through jq, and only fall back to table when the result is being shown to a human.

Power Patterns

These patterns unlock unifly's most distinctive capabilities. For full recipes with runnable shell scripts, consult references/workflows.md.

--from-file for complex create/update

Most entities accept --from-file <path.json> (or -F) instead of flag salad: networks, wifi, firewall policies, firewall zones, firewall groups, nat policies, acl, dns, traffic-lists, vpn site-to-site, vpn remote-access, vpn clients, vpn peers, vpn settings patch, and devices port-set (JSONC for switch port config-as-code). Construct the JSON payload, validate it, then apply. See examples/ for payload templates.

bash
unifly networks create -F examples/network-iot-vlan.json
unifly firewall policies create -F examples/firewall-block-iot.json
Real-time event streaming
bash
# All events
unifly events watch

# Filter by EventCategory (case-insensitive): Device, Client, Network,
# System, Admin, Firewall, Vpn, Unknown
unifly events watch --types "Firewall,Admin"

# JSON stream for piping into alerting (severity serializes PascalCase)
unifly events watch --types Client -o json | jq -c 'select(.severity == "Warning")'
Firewall policy reorder (round-trippable)
bash
# Read current order for a zone pair
unifly firewall policies reorder --source-zone <zid> --dest-zone <zid> --get

# Write back an explicit order
unifly firewall policies reorder --source-zone <zid> --dest-zone <zid> \
  --set "<id1>,<id2>,<id3>"
Raw API escape hatch

For endpoints unifly does not wrap (including UniFi v2 routes and Integration paths), use unifly api. It routes through the Session client, so CSRF token management and session caching are automatic.

bash
unifly api "v2/api/site/default/traffic-flow-latest-statistics"
unifly api "cmd/stamgr" -m post -d '{"cmd":"kick-sta","mac":"aa:bb:cc:dd:ee:ff"}'
unifly api "api/s/default/set/setting/teleport" -m put -d '{"enabled":true}'
Show full SKILL.md (737 more words)Show less
Session API VPN payloads and settings

unifly vpn site-to-site wraps Session API rest/networkconf records whose purpose is site-vpn. This is the current CRUD path for manual IPsec and OpenVPN site-to-site records exposed by the controller.

bash
unifly vpn site-to-site list -o json
unifly vpn site-to-site get <id> -o json
unifly vpn site-to-site create -F site-to-site.json
unifly vpn site-to-site update <id> -F site-to-site.json
unifly vpn site-to-site delete <id>

unifly vpn remote-access wraps Session API rest/networkconf records whose purpose is remote-user-vpn. This is the current CRUD path for L2TP, OpenVPN, and WireGuard remote-access servers exposed by the controller.

bash
unifly vpn remote-access list -o json
unifly vpn remote-access get <id> -o json
unifly vpn remote-access create -F remote-access.json
unifly vpn remote-access update <id> -F remote-access.json
unifly vpn remote-access suggest-port -o json
unifly vpn remote-access download-config <id> --path .
unifly vpn remote-access delete <id>

unifly vpn clients wraps Session API rest/networkconf records whose purpose is vpn-client. This is the current CRUD path for configured OpenVPN and WireGuard client profiles exposed by the controller.

bash
unifly vpn clients list -o json
unifly vpn clients get <id> -o json
unifly vpn clients create -F vpn-client.json
unifly vpn clients update <id> -F vpn-client.json
unifly vpn clients delete <id>

unifly vpn peers wraps the Session v2 API WireGuard peer endpoints for remote-access VPN servers. list can enumerate all peers or scope to a single server ID; create, update, and delete require the parent remote-access server ID.

bash
unifly vpn peers list -o json
unifly vpn peers list <server-id> -o json
unifly vpn peers get <server-id> <peer-id> -o json
unifly vpn peers create <server-id> -F peer.json
unifly vpn peers update <server-id> <peer-id> -F peer.json
unifly vpn peers delete <server-id> <peer-id>
unifly vpn peers subnets -o json

unifly vpn connections wraps the Session v2 API VPN client connection inventory exposed at v2/api/site/<site>/vpn/connections. restart issues the same controller action the web UI uses for a single connection.

bash
unifly vpn connections list -o json
unifly vpn connections get <id> -o json
unifly vpn connections restart <id>

unifly vpn magic-site-to-site wraps the Session v2 API magicsitetositevpn/configs inventory endpoint. It is currently read-only.

bash
unifly vpn magic-site-to-site list -o json
unifly vpn magic-site-to-site get <id> -o json

unifly vpn settings wraps the Session API rest/setting records for the VPN feature toggles the controller exposes today: teleport, magic-site-to-site-vpn, openvpn, and peer-to-peer.

bash
unifly vpn settings list -o json
unifly vpn settings get peer-to-peer -o json
unifly vpn settings set teleport --enabled true
unifly vpn settings patch peer-to-peer -F peer-to-peer.json

site-to-site get, remote-access get, clients get, connections get, peers get, and magic-site-to-site get return redacted records with summary fields and the sanitized controller payload under fields.

settings get returns a redacted wrapper with key, enabled, and fields. patch accepts either the raw session setting body or that wrapper shape and will send the inner fields object back to the controller.

Bulk operations via filter DSL

hotspot purge --filter accepts the Integration filter DSL for bulk deletion without ID iteration:

bash
unifly hotspot purge --filter "status.eq('UNUSED')"
unifly hotspot purge --filter "name.contains('Conference')"
TUI handoff for human verification

Propose a change, let a human visually confirm in the TUI before committing:

bash
# Agent inspects, proposes. Human runs unifly tui and verifies on
# screen 4 (Networks) or 5 (Firewall) before the agent applies the change.
unifly tui
Multi-profile targeting
bash
unifly -p home devices list
unifly -p office firewall policies list
UNIFI_PROFILE=warehouse unifly system health

Essential Gotchas

  1. Default list limit is 25 (a few commands default higher: hotspot, events, and alarms use 100; clients roams uses 50). The CLI prints a truncation hint when results hit the default. For enumeration, always pass --all or --limit 200 (or higher).
  2. Environment variables use the UNIFI_ prefix, not UNIFLY_. Relevant vars: UNIFI_URL, UNIFI_API_KEY, UNIFI_USERNAME, UNIFI_PASSWORD, UNIFI_SITE, UNIFI_PROFILE, UNIFI_OUTPUT, UNIFI_INSECURE, UNIFI_TIMEOUT, UNIFI_TOTP, UNIFI_HOST_ID, UNIFI_DEMO. The only UNIFLY_* var is UNIFLY_THEME, which themes both CLI output and the TUI.
  3. --yes / -y skips confirmation prompts for mutations. Required for non-interactive use.
  4. API key mode covers most commands on UniFi OS, including Session API endpoints (stats, device commands, Wi-Fi observability, client enrichment). Use Hybrid only when live WebSocket streaming is needed (events watch, TUI live refresh). Client and device enrichment fields work in API key mode.
  5. Cloud support is Integration-only. unifly cloud ... talks to Site Manager and auth_mode = "cloud" routes Integration-backed commands through the connector, but Session-only features still need direct controller access.
  6. Exit codes are meaningful. 0 on success, non-zero on error. Capture stderr for diagnostics.
  7. Create commands print the created entity on stdout in the chosen --output format, with the confirmation on stderr. Capture IDs directly: ID=$(unifly networks create ... -o json | jq -r .id); -o plain emits the bare ID. Exceptions that print nothing because the controller returns no record: sites create and system backup create.

Agent Workflow

  1. Verify the tool exists with command -v unifly.
  2. Check auth mode with unifly config show before running commands that require Session or Integration specifically.
  3. Run unifly system health -o json as the first touch to confirm connectivity.
  4. Inspect before mutating: list / get the entity first, capture IDs.
  5. For complex creates, write a JSON payload and use --from-file.
  6. After mutations, re-fetch the entity with get to confirm state.
  7. For irreversible operations (delete, reboot, poweroff), surface a summary to the user before running even with --yes.

Additional Resources

Reference Files
  • references/commands.md: Per-command flag reference with gotchas (non-obvious flags, dual-API boundaries, correct argument forms)
  • references/concepts.md: UniFi networking concepts, dual-API gate matrix, auth decision tree, environment variables, platform config paths, MFA/TOTP, error taxonomy
  • references/workflows.md: Runnable automation recipes (event streaming, safe firewall reorder, bulk DHCP reservations, ad-blocking via DNS policies, cafe voucher flow, incident response)
Example Files
  • examples/config.toml: Multi-profile config template
  • examples/network-iot-vlan.json: VLAN creation payload for --from-file
  • examples/firewall-block-iot.json: Firewall policy payload
  • examples/nat-masquerade.json: NAT masquerade policy payload
  • examples/nat-port-forward.json: Destination NAT (port forward) payload
  • examples/wifi-iot.json: WiFi SSID payload
  • examples/vpn-remote-access-wireguard.json: WireGuard remote-access VPN payload
  • examples/vpn-site-to-site-ipsec.json: IPsec site-to-site tunnel payload
  • examples/vpn-client-openvpn.json: OpenVPN client payload
  • examples/vpn-wireguard-peer.json: WireGuard peer configuration payload
  • examples/switch-ports.jsonc: Switch port config-as-code payload for devices port-set -F

© hyperb1iss, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 14 other files (references) in skills/unifly of hyperb1iss/unifly.

  • SKILL.md
  • examples/config.toml
  • examples/firewall-block-iot.json
  • examples/nat-masquerade.json
  • examples/nat-port-forward.json
  • examples/network-iot-vlan.json
  • examples/switch-ports.jsonc
  • examples/vpn-client-openvpn.json
  • examples/vpn-remote-access-wireguard.json
  • examples/vpn-site-to-site-ipsec.json
  • examples/vpn-wireguard-peer.json
  • examples/wifi-iot.json
  • references/commands.md
  • references/concepts.md
  • references/workflows.md

Open the folder on GitHubat commit b565654

Compare with similar skills

Unifly next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Unifly compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Unifly this skillhyperb1iss/unifly264—~7kAutomated safety check: PassApache-2.0
Routing Architecturemajiayu000/litellm-rs117—~1.9kAutomated safety check: PassMIT
Rustpgdogdev/pgdog5.6k—~1.9kAutomated safety check: NotesAGPL-3.0
NGINX Ingress Policy CRD Guidenginx/kubernetes-ingress5.1k—~2kAutomated safety check: PassApache-2.0
ArvanCloud API Operatorerfnzdeh/arvancloud-agent-skill135—~3.9kAutomated safety check: PassMIT
Aliyun Swas Managecinience/alicloud-skills3971 repos~1.9kAutomated safety check: PassMIT

Similar skills

  • Routing Architecture

    majiayu000/litellm-rs

    LiteLLM-RS Routing Architecture. An agent skill from majiayu000/litellm-rs.

    117 GitHub stars~1.9k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Rust

    pgdogdev/pgdog

    Rust coding best practices for idiomatic, efficient, and maintainable code.

    5.6k GitHub stars~1.9k tokensUpdated yesterday
    DatabasesAuto-check: notes
  • NGINX Ingress Policy CRD Guide

    nginx/kubernetes-ingress

    Step-by-step checklist for adding a new Policy CRD type to the NGINX Ingress Controller, from the Go types and validation to config generation and templates.

    5.1k GitHub stars~2k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • ArvanCloud API Operator

    erfnzdeh/arvancloud-agent-skill

    Drives ArvanCloud's REST APIs for CDN, DNS, cloud servers, object storage and more, with helper scripts for calls, account inventory and certificates.

    135 GitHub stars~3.9k tokensUpdated 10 days ago
    DevOps & CloudAuto-check passed
  • Aliyun Swas Manage

    cinience/alicloud-skills

    A skill your agent uses when managing Alibaba Cloud Simple Application Server (SWAS OpenAPI 2020-06-01) resources end-to-end, including querying instances, starting/stopping/rebooting, executing…

    397 GitHub starsUsed in 1 repo~1.9k tokens
    DevOps & CloudAuto-check passed
  • Setup Cpu Proxy Server

    drawthingsai/draw-things-community

    Set up and verify a new Draw Things CPU proxy and Envoy server using the scripts in Scripts/ServerManagement/CPUScript.

    580 GitHub stars~3.8k tokensUpdated 2 days ago
    DevOps & CloudAuto-check passed

Works with

Questions about Unifly

What does Unifly do?

This skill should be used when the user asks to "manage UniFi devices", "configure UniFi networks", "create a VLAN", "provision an SSID", "create firewall rules", "reorder firewall policies"…. Unifly is an agent skill from hyperb1iss/unifly.

When should I use Unifly?

Unifly fits situations like: asks to manage UniFi devices; configure UniFi networks; provision an SSID; create firewall rules.

How do I install Unifly in Claude Code?

Run `npx skills add hyperb1iss/unifly --skill unifly -a claude-code`. Or copy the skill folder (skills/unifly in hyperb1iss/unifly) into .claude/skills/unifly in your project. Claude Code loads it when a task matches its description.

How do I install Unifly in Codex?

Run `npx skills add hyperb1iss/unifly --skill unifly -a codex`. Or copy the skill folder (skills/unifly in hyperb1iss/unifly) into .agents/skills/unifly in your project. Codex loads it when a task matches its description.

Can I use Unifly in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add hyperb1iss/unifly --skill unifly -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/unifly, .gemini/skills/unifly, .github/skills/unifly and .opencode/skills/unifly in your project.

What does Unifly need to run?

Going by SKILL.md and its folder, Unifly needs the command-line tools its instructions call (jq, brew and cargo) and credentials named UNIFI_API_KEY and UNIFI_PASSWORD.

Does Unifly access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Unifly safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Unifly use?

Unifly is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Unifly use?

About 7k tokens (SKILL.md is roughly 28k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 17k tokens, read only when the agent opens those files.

What are the alternatives to Unifly?

Skills that share tags, products or a category with Unifly: Routing Architecture (majiayu000/litellm-rs, 117 stars), Rust (pgdogdev/pgdog, 5.6k stars), NGINX Ingress Policy CRD Guide (nginx/kubernetes-ingress, 5.1k stars) and ArvanCloud API Operator (erfnzdeh/arvancloud-agent-skill, 135 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Unifly?

hyperb1iss (a GitHub user) maintains it in hyperb1iss/unifly, which has 264 GitHub stars. The repository was last updated on August 7, 2026.

Source: hyperb1iss/unifly on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.