Agent skill

Flyio CI Integration

by jeremylongshore in jeremylongshore/tons-of-skills-marketplace

Design a least-privilege Fly.io CI lane with deterministic validation, deployment, and rollback evidence.

MITAuto-check passedDevOps & Cloud

Install Flyio CI Integration

skills CLI
$ npx skills add jeremylongshore/tons-of-skills-marketplace --skill flyio-ci-integration -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jeremylongshore/tons-of-skills-marketplace flyio-ci-integration --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jeremylongshore/tons-of-skills-marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/.curated/flyio-ci-integration .claude/skills/flyio-ci-integration && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
flyio-ci-integration
GitHub stars
2.8k
Token cost
~1.2k tokens
SKILL.md length
528 words
Files
2 (incl. references)
Skills in repo
3,342
Repo updated
First seen
Licence
MIT

At a glance

Design a least-privilege Fly.io CI lane with deterministic validation, deployment, and rollback evidence.

  • Works in 6 steps: Separate validation from deployment → Issue the narrowest token → Pin the release inputs → …
  • Auditing automated deployments
  • SKILL.md covers Overview, Prerequisites, Instructions and Authentication, plus 5 more sections
  • Calls fly; needs FLY_API_TOKEN and FLY_ACCESS_TOKEN

What it does

Flyio CI Integration is an agent skill from jeremylongshore/tons-of-skills-marketplace. Design a least-privilege Fly.io CI lane with deterministic validation, deployment, and rollback evidence. Use when wiring or auditing automated deployments. Trigger with: "add Fly.io CI", "harden Fly deploy workflow", "rotate Fly CI token".

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/official-docs.md`). Compatibility notes: Requires a Fly.io app, an approved CI system, an app-scoped or organization-scoped token, and a protected deployment environment.

It sits in DevOps & Cloud, covering Deployment. The repository describes itself as: Model-agnostic agent-skills platform with a harness-free canonical layer, verified adapters, and the ccpi package manager. Explore at tonsofskills.com. The licence is MIT.

When your agent uses it

  • Auditing automated deployments
  • With: add Fly.io CI
  • Harden Fly deploy workflow
  • Rotate Fly CI token

Example prompts

  • “add Fly.io CI”
  • “harden Fly deploy workflow”
  • “rotate Fly CI token”
  • “/flyio-ci-integration”

Requirements

  • A credential in FLY_API_TOKEN
  • A credential in FLY_ACCESS_TOKEN
  • Compatibility (from SKILL.md): Requires a Fly.io app, an approved CI system, an app-scoped or organization-scoped token, and a protected deployment environment.
  • Pre-approved tools (allowed-tools): Read, Grep, Write, Edit

Workflow steps

6 steps, taken from the step headings in SKILL.md.

  1. Separate validation from deployment
  2. Issue the narrowest token
  3. Pin the release inputs
  4. Validate the candidate
  5. Deploy through one serialized lane
  6. Verify and close

What it can do on your machine

Read from SKILL.md and the folder at commit cfae287. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Grep
    • Write
    • Edit

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • fly

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • fly.io

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • FLY_API_TOKEN
    • FLY_ACCESS_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Requires a Fly.io app, an approved CI system, an app-scoped or organization-scoped token, and a protected deployment environment.

    From compatibility in the SKILL.md frontmatter.

Context cost

Flyio CI Integration loads about 1.2k tokens when it runs, and up to ~1.7k if it reads all its reference files. Until then it costs about 65 tokens; SKILL.md has 528 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~65
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from jeremylongshore/tons-of-skills-marketplace at commit cfae287, republished under its MIT licence (© jeremylongshore). 528 words, ~1,223 tokens.

Download SKILL.mdSave it as .claude/skills/flyio-ci-integration/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
flyio-ci-integration
description
Design a least-privilege Fly.io CI lane with deterministic validation, deployment, and rollback evidence. Use when wiring or auditing automated deployments. Trigger with: "add Fly.io CI", "harden Fly deploy workflow", "rotate Fly CI token".
allowed-tools
Read, Grep, Write, Edit
compatibility
Requires a Fly.io app, an approved CI system, an app-scoped or organization-scoped token, and a protected deployment environment.
version
2.0.0
argument-hint
[app-environment-and-workflow]
model
inherit
effort
high
license
MIT
author
Jeremy Longshore <jeremy@intentsolutions.io>
tags
saas, flyio, ci-cd, deploy-token, change-control

Fly.io CI Deployment Control

Overview

Build CI as a controlled release system rather than a single deploy command. Separate pull-request validation from authenticated deployment, bind production to an immutable revision, and retain enough evidence to identify and reverse the release.

Prerequisites

  • Named app, organization, environment, release owner, and rollback owner
  • Protected CI environment with an approved secret manager
  • Health endpoint or other deployment check and a tested prior release

Instructions

Step 1: Separate validation from deployment

Run secret-free configuration, container, and contract checks on pull requests. Permit authenticated Fly.io access only in a protected post-merge or manually approved environment.

Step 2: Issue the narrowest token

Use an app-scoped deploy token for one app, an organization token only for approved multi-app workflows, or a read-only token for observation. Set an explicit expiry and store only the secret reference.

Step 3: Pin the release inputs

Bind source commit, image digest, flyctl setup action or binary version, target app, configuration hash, and deployment strategy before execution.

Step 4: Validate the candidate

Check the rendered app configuration, image startup contract, health checks, release command, volume constraints, and rollback target without changing production.

Step 5: Deploy through one serialized lane

Use environment concurrency so two production releases cannot race. Capture the release identifier and wait for health checks rather than treating command exit alone as success.

Step 6: Verify and close

Probe the approved endpoint, inspect aggregate health and Machine state, reconcile the running image, and either record success or invoke the tested rollback.

Authentication

Expose the token to the deployment step as FLY_API_TOKEN or FLY_ACCESS_TOKEN only. The provider recommends scoped tokens created with fly tokens create; do not use the deprecated hidden fly auth token output in CI. Mask the value and revoke it after suspected exposure.

Show full SKILL.md (235 more words)Show less

Tool Discipline

Use Read and Grep to inspect application configuration, deployment evidence, provider documentation, fixtures, logs, schemas, and existing tests before proposing a change. Use Write or Edit only for an approved plan, configuration, implementation, test, or redacted receipt. Do not create, deploy, scale, restart, stop, suspend, destroy, rotate, revoke, expose, or migrate live Fly.io resources without explicit operator approval.

Output

  • CI trust-boundary and approval map
  • Pinned workflow with validation, deploy, health, and rollback stages
  • Release receipt containing revision, image, app, strategy, checks, and token reference

Return the target organization, app, environment, region set, Machine or database identifiers, source-contract fingerprint, evidence, unresolved risks, rollback state, and final decision without exposing tokens, secrets, connection strings, or customer data.

Examples

A production workflow validates fly.toml without credentials on every pull request. After merge, a protected environment supplies an expiring app deploy token, serializes fly deploy --strategy rolling, verifies health, and retains the previous image as the rollback target.

Error Handling

FailureResponse
Token sees no appConfirm token scope and app name; scoped tokens can filter listings instead of returning an explicit authorization error.
Health checks failStop promotion, preserve logs and Machine state, and roll back to the recorded healthy release.
Concurrent release detectedCancel the newer lane or wait for the active release; never interleave two production updates.

Resources

© jeremylongshore, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/.curated/flyio-ci-integration of jeremylongshore/tons-of-skills-marketplace.

  • SKILL.md
  • references/official-docs.md

Open the folder on GitHubat commit cfae287

Compare with similar skills

Flyio CI Integration next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Flyio CI Integration compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Flyio CI Integration this skilljeremylongshore/tons-of-skills-marketplace2.8k—~1.2kAutomated safety check: PassMIT
Kubeshark Installerkubeshark/kubeshark12k—~3.6kAutomated safety check: NotesApache-2.0
GreptimeDB Dev Docker ImageGreptimeTeam/greptimedb6.7k—~4kAutomated safety check: NotesApache-2.0
Mirrord Operatormetalbear-co/mirrord5.4k1 repos~4.6kAutomated safety check: PassMIT
KubeSphere ServiceMesh Managerkubesphere/kubesphere17k—~2.4kAutomated safety check: PassCustom licence
Vercelremotion-dev/remotion63k—~1.2kAutomated safety check: PassCustom licence

Similar skills

  • Kubeshark Installer

    kubeshark/kubeshark

    Installs and configures Kubeshark on a Kubernetes cluster, choosing between the quick CLI path and a Helm install with custom values.

    12k GitHub stars~3.6k tokensUpdated yesterday
    DevOps & CloudAuto-check: notes
  • GreptimeDB Dev Docker Image

    GreptimeTeam/greptimedb

    Packages a locally built GreptimeDB debug binary into a development-only Docker image for local-cluster testing, with an optional push to a dev registry.

    6.7k GitHub stars~4k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Mirrord Operator

    metalbear-co/mirrord

    Help users install and configure the mirrord Operator for team/enterprise environments.

    5.4k GitHub starsUsed in 1 repo~4.6k tokens
    DevOps & CloudAuto-check passed
  • KubeSphere ServiceMesh Manager

    kubesphere/kubesphere

    Installs, checks and troubleshoots the KubeSphere ServiceMesh extension (Istio, Kiali, Jaeger), including grayscale release, sidecar injection, topology and tracing issues.

    17k GitHub stars~2.4k tokensUpdated 2 mo ago
    DevOps & CloudAuto-check passed
  • Vercel

    remotion-dev/remotion

    Official

    Set up a Codex monitor for Vercel deployments and preview URLs.

    63k GitHub stars~1.2k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • AWS Cdk Development

    zxkane/aws-skills

    AWS Cloud Development Kit (CDK) expert for building cloud infrastructure with TypeScript/Python.

    367 GitHub starsUsed in 2 repos~2.5k tokens
    DevOps & CloudAuto-check passed

More from jeremylongshore/tons-of-skills-marketplace

All 3,342 skills in this repo
  • Performing Security Code Review

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin.

    2.8k GitHub starsUsed in 2 repos~1.3k tokens
    Auto-check: notes
  • Adapting Transfer Learning Models

    jeremylongshore/tons-of-skills-marketplace

    Build this skill automates the adaptation of pre-trained machine learning models using transfer learning techniques.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Agent Context Loader

    jeremylongshore/tons-of-skills-marketplace

    Execute proactive auto-loading: automatically detects and loads agents.md files.

    2.8k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Aggregating Performance Metrics

    jeremylongshore/tons-of-skills-marketplace

    Aggregate and centralize performance metrics from applications, systems, databases, caches, and services.

    2.8k GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Analyzing Capacity Planning

    jeremylongshore/tons-of-skills-marketplace

    Execute this skill enables AI assistant to analyze capacity requirements and plan for future growth.

    2.8k GitHub stars~947 tokensUpdated today
    Auto-check passed
  • Analyzing Database Indexes

    jeremylongshore/tons-of-skills-marketplace

    Process use when you need to work with database indexing. An agent skill from jeremylongshore/tons-of-skills-marketplace.

    2.8k GitHub stars~2k tokensUpdated today
    Auto-check passed

Categories

Questions about Flyio CI Integration

What does Flyio CI Integration do?

Design a least-privilege Fly.io CI lane with deterministic validation, deployment, and rollback evidence. Flyio CI Integration is an agent skill from jeremylongshore/tons-of-skills-marketplace.io CI lane with deterministic validation, deployment, and rollback evidence.

When should I use Flyio CI Integration?

Flyio CI Integration fits situations like: auditing automated deployments; with: add Fly.io CI; harden Fly deploy workflow; rotate Fly CI token.

How do I install Flyio CI Integration in Claude Code?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill flyio-ci-integration -a claude-code`. Or copy the skill folder (skills/.curated/flyio-ci-integration in jeremylongshore/tons-of-skills-marketplace) into .claude/skills/flyio-ci-integration in your project. Claude Code loads it when a task matches its description.

How do I install Flyio CI Integration in Codex?

Run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill flyio-ci-integration -a codex`. Or copy the skill folder (skills/.curated/flyio-ci-integration in jeremylongshore/tons-of-skills-marketplace) into .agents/skills/flyio-ci-integration in your project. Codex loads it when a task matches its description.

Can I use Flyio CI Integration in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jeremylongshore/tons-of-skills-marketplace --skill flyio-ci-integration -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/flyio-ci-integration, .gemini/skills/flyio-ci-integration, .github/skills/flyio-ci-integration and .opencode/skills/flyio-ci-integration in your project.

What does Flyio CI Integration need to run?

Going by SKILL.md and its folder, Flyio CI Integration needs the command-line tools its instructions call (fly) and credentials named FLY_API_TOKEN and FLY_ACCESS_TOKEN. Our summary lists: A credential in FLY_API_TOKEN; A credential in FLY_ACCESS_TOKEN. Its frontmatter pre-approves these tools: Read, Grep, Write, Edit. Compatibility (from SKILL.md): Requires a Fly.io app, an approved CI system, an app-scoped or organization-scoped token, and a protected deployment environment..

Does Flyio CI Integration access the network?

SKILL.md names 1 domain. As links in the text: fly.io. This is read from the text; nothing was executed.

Is Flyio CI Integration safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Flyio CI Integration use?

Flyio CI Integration is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Flyio CI Integration use?

About 1.2k tokens (SKILL.md is roughly 4.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 479 tokens, read only when the agent opens those files.

What are the alternatives to Flyio CI Integration?

Skills that share tags, products or a category with Flyio CI Integration: Kubeshark Installer (kubeshark/kubeshark, 12k stars), GreptimeDB Dev Docker Image (GreptimeTeam/greptimedb, 6.7k stars), Mirrord Operator (metalbear-co/mirrord, 5.4k stars) and KubeSphere ServiceMesh Manager (kubesphere/kubesphere, 17k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Flyio CI Integration?

jeremylongshore (a GitHub user) maintains it in jeremylongshore/tons-of-skills-marketplace, which has 2,827 GitHub stars. The repository holds 3,342 skills in this directory. The repository was last updated on October 10, 2026.

Source: jeremylongshore/tons-of-skills-marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.