Agent skill

VPhone Guest Control

by Lakr233 in Lakr233/vphone-cli

Drives a virtual iPhone running on an Apple Silicon Mac through the vphone-launchpad-cli, from checking host setup and starting a machine to tapping, typing and installing apps in the guest.

MITAuto-check passedMobile

Install VPhone Guest Control

skills CLI
$ npx skills add Lakr233/vphone-cli --skill vphone-guest-control -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Lakr233/vphone-cli vphone-guest-control --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Lakr233/vphone-cli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/Skills/vphone-guest-control .claude/skills/vphone-guest-control && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
vphone-guest-control
GitHub stars
15k
Token cost
~1.6k tokens
SKILL.md length
727 words
Files
10 (incl. references)
Skills in repo
3
Repo updated
First seen
Licence
MIT

At a glance

Drives a virtual iPhone running on an Apple Silicon Mac through the vphone-launchpad-cli, from checking host setup and starting a machine to tapping, typing and installing apps in the guest.

  • Works in 3 steps: Find out where the user is. Run… → Pick the reference for the task, and… → Verify with the guest, not with…
  • Setting up vphone and creating a new virtual iPhone machine
  • SKILL.md covers How a session should go, Output and errors and Rules that save the user's…
  • Calls bundle and xcrun

What it does

vphone runs a virtual iPhone through Apple's Virtualization.framework, with the vphone-launchpad Mac app owning the only privileged helper and downloading or verifying the VPhone.bundle, while vphone-launchpad-cli is a stateless client whose commands also show up in the app's own window and history. The skill insists on using the CLI for everything, since any other route, such as sudo, a separate vphone-cli copy, or devicectl, either lacks the right entitlements, bypasses checks the app records, or times out against these guests.

A session starts by running the CLI's status command: if it does not exist, the agent is pointed to the install reference; otherwise the JSON result decides the next step, such as telling the user to finish host setup in the app themselves when the helper is not ready, installing or verifying a bundle, creating a machine when none exists, or starting and controlling the one the user named. Separate reference files cover installation and its FAQ, creating and managing machines, the guest socket for taps, swipes, keys and screenshots, calling vphoned RPC methods for apps, files, logs, processes and the UI tree, and installing an IPA, a jailbreak bootstrap, or a .deb package.

When your agent uses it

  • Setting up vphone and creating a new virtual iPhone machine
  • Installing an IPA or a jailbreak bootstrap into a running vphone guest
  • Automating taps, swipes or screenshots inside a vphone guest
  • Debugging a vphone guest that shows a black screen or won't boot

Example prompts

  • “Set up vphone and create my first virtual iPhone machine.”
  • “Install this IPA into the running vphone guest.”
  • “The vphone guest is stuck on a black screen, help me debug it.”

Requirements

  • An Apple Silicon Mac
  • vphone-launchpad and vphone-launchpad-cli installed

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Find out where the user is. Run vphone-launchpad-cli status. If the
  2. Pick the reference for the task, and read it before acting.
  3. Verify with the guest, not with assumptions. After an input, take a

What it can do on your machine

Read from SKILL.md and the folder at commit 2032dff. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • bundle
    • xcrun

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

VPhone Guest Control loads about 1.6k tokens when it runs, and up to ~16k if it reads all its reference files. Until then it costs about 202 tokens; SKILL.md has 727 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~202
When it runs · the whole SKILL.md, loaded when a task matches
~1.6k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~16k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from Lakr233/vphone-cli at commit 2032dff, republished under its MIT licence (© Lakr233). 727 words, ~1,603 tokens.

Download SKILL.mdSave it as .claude/skills/vphone-guest-control/SKILL.md (or your agent's skills folder). This skill also uses 9 other files; get the full folder from GitHub.
name
vphone-guest-control
description
Install vphone-launchpad and VPhone.bundle, create and run vphone virtual iPhones, and drive a running guest from the command line with vphone-launchpad-cli and the per-machine vphone.sock. Make sure to use this skill whenever the user mentions vphone, vphone-launchpad, vphone-launchpad-cli, VPhone.bundle, vphoned, vphone.sock, or a virtual iPhone on their Mac, even if they do not name the tool. That includes setting vphone up, creating/starting/stopping a machine, tapping/swiping/typing/taking screenshots in the guest, calling a vphoned method (apps, files, logs, processes, UI tree), installing an IPA into a guest, installing the roothide/rootless bootstrap (Irisin), ssh into a guest, installing a .deb, or debugging a guest that shows a black screen or will not boot to the UI.

Driving vphone

vphone runs a virtual iPhone on an Apple Silicon Mac through Virtualization.framework. Two pieces matter to you:

PieceRole
vphone-launchpad (Mac app)Downloads and verifies VPhone.bundle, creates machines, runs them. Owns the only root helper.
vphone-launchpad-cliA stateless client of the running app. Every command also appears in the app's window and history.

Use vphone-launchpad-cli for everything. The app does the privileged and signed work for you; a second route (sudo, a copy of vphone-cli, devicectl) either lacks the entitlements, bypasses the checks the app records, or times out against these guests.

How a session should go

  1. Find out where the user is. Run vphone-launchpad-cli status. If the command does not exist, go to install. Otherwise the JSON tells you the next step:

    • canInstallBundles: false or helper not ready: the user must finish Host Setup in the app (administrator password, Developer Tools access). You cannot do this for them; say exactly what is missing.
    • defaultBundle: null or bundleReady: false: install or verify a bundle. Each machine runs with its own bundle (vm list → bundle); the default only decides what new machines get.
    • machines: 0: create one (machines).
    • Otherwise: list machines, start the one the user named, then control it.
  2. Pick the reference for the task, and read it before acting.

    TaskRead
    Install Launchpad or a bundle, host requirements, series matchingreferences/install.md
    An install step failed: "damaged", Developer Tools access turns off, several macOS installations, zsh: killed, not Apple siliconreferences/install-faq.md
    Create, start, stop, retry, update a machine, change its Core Bundlereferences/machines.md
    Tap, swipe, key, screenshot, anything on vphone.sockreferences/guest-socket.md
    Call a vphoned method: apps, files, logs, UI tree, processesreferences/rpc-methods.md
    Installing an IPAreferences/rpc-methods.md
    roothide vs rootless, installing the bootstrap, ssh, /rootfs, handing files to vphoned, .debreferences/guest-layout.md
    Black screen, timeouts, AMFI, "客体代理未连接"references/troubleshooting.md
    A symptom the above does not cover; which research note or source explains itreferences/finding-docs.md
  3. Verify with the guest, not with assumptions. After an input, take a screenshot or read ui.describe; after a launch, check apps.foreground. The guest is a real device with timing, so a command that returned ok has not necessarily produced the visible result.

Output and errors

  • Progress lines go to stderr as they arrive. The result is one JSON document on stdout. Exit 0 is success; exit 1 is failure with the reason on stderr. Parse stdout, and read stderr when the exit code is 1.
  • vphone-launchpad-cli help prints every command with its options and is authoritative if this skill and the installed version disagree.
  • Quote JSON in single quotes: guest rpc myphone apps.launch '{"bundle_id":"com.apple.Preferences"}'.
  • Interrupting the CLI cancels exec, waits and CFW install. A bundle install or a machine creation belongs to the app window and keeps going, so do not start a second one because the CLI went quiet; run vm log <name> --kind create.
  • Pass --root <library> only when two libraries hold a machine with the same name; the error lists the libraries.
Show full SKILL.md (236 more words)Show less

Rules that save the user's machine

These exist because each one has cost the user real time or disk before.

  • Use the machines the user named. Do not vm create to reproduce a problem; diagnose on the existing guest. A creation takes tens of GB and several restarts, and a half-built machine is harder to clean up than the bug.
  • Creating is one at a time, after checking free disk. IPSWs plus the restore tree are large, and a full disk fails halfway with confusing errors.
  • Never change host security settings (SIP, boot-args, AMFI, Research Guests) and never run bundle accept, bundle remove, cfw install or a second vm create over existing work unless the user asked. Report what is needed; the Mac's owner decides.
  • force methods need the user's intent. processes.kill, services.stop, apps.uninstall, system.respring, system.reboot, system.shutdown and similar refuse to run without "force":true. Passing it is the confirmation, so pass it only for an action the user asked for.
  • Do not edit a machine's folder (~/.vphone/machines/<name>/) while it runs. Use RPC for guest files instead.
  • Keep the host API listener on loopback. --api-listen sends its token in clear text.
  • Install apps through installd (ideviceinstaller) when the point is to test installation; apps.install bypasses installd. Never use xcrun devicectl to install or launch (it times out); listing devices is fine.
  • When stuck, read before experimenting. The repository's guides and Research/ notes quote real failures; see references/finding-docs.md.

© Lakr233, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 9 other files (references) in Skills/vphone-guest-control of Lakr233/vphone-cli.

  • SKILL.md
  • evals/evals.json
  • references/finding-docs.md
  • references/guest-layout.md
  • references/guest-socket.md
  • references/install-faq.md
  • references/install.md
  • references/machines.md
  • references/rpc-methods.md
  • references/troubleshooting.md

Open the folder on GitHubat commit 2032dff

Compare with similar skills

VPhone Guest Control next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

VPhone Guest Control compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
VPhone Guest Control this skillLakr233/vphone-cli15k—~1.6kAutomated safety check: PassMIT
Apple Crash Log .NET Symbolicationdotnet/skills5.6k1 repos~2.4kAutomated safety check: PassMIT
Orca iOS Simulator Controlstablyai/orca89k1 repos~584Automated safety check: PassApache-2.0
Phoneagentrounak/PhoneAgent800—~2.2kAutomated safety check: PassMIT
FlowdeckSwiftedMind/Tessera116—~11kAutomated safety check: PassMIT
Interceptor iOSHacker-Valley-Media/Interceptor522—~1.9kAutomated safety check: PassCustom licence

Similar skills

  • Official

    Resolves .NET runtime frames in Apple .ips crash logs to function names, source files and line numbers using dSYM symbols, atos and the Microsoft symbol server.

    5.6k GitHub starsUsed in 1 repo~2.4k tokens
    MobileAuto-check passed
  • iOS Simulator control from inside Orca, with the live device view in Orca's emulator pane. Use when driving a booted Apple Simulator on macOS: taps, gestures…

    89k GitHub starsUsed in 1 repo~584 tokens
    MobileAuto-check passed
  • Phoneagent

    rounak/PhoneAgent

    Control a connected iPhone, iOS simulator, Android emulator, or Android device from macOS through PhoneAgent's JSON-RPC bridge.

    800 GitHub stars~2.2k tokensUpdated 1 mo ago
    MobileAuto-check passed
  • Flowdeck

    SwiftedMind/Tessera

    FlowDeck is REQUIRED for all Apple platform build/run/test/launch/debug/simulator/device/log/automation tasks.

    116 GitHub stars~11k tokensUpdated 5 mo ago
    MobileAuto-check passed
  • Interceptor iOS

    Hacker-Valley-Media/Interceptor

    Drive any installed app on an owned, unlocked, Developer-Mode iPhone via interceptor ios : ref-tagged element trees, deterministic coordinate taps (click), reliable text entry (type/keys), scroll…

    522 GitHub stars~1.9k tokensUpdated 8 days ago
    Productivity & AutomationAuto-check passed
  • Produce every Usage4Claude interface image used by the READMEs and docs.

    407 GitHub stars~3k tokensUpdated 12 days ago
    MobileAuto-check passed

More from Lakr233/vphone-cli

  • Looks up symbols and addresses in vphone600 release and research kernel datasets, and cross-references XNU source, with findings that separate fact from inference.

    15k GitHub stars~530 tokensUpdated today
    Auto-check passed
  • Authoring VPhone Patch Sets

    Lakr233/vphone-cli

    Explains how to declare a firmware patch in a vphone patch set, add a new set, or write a preset, including naming, gating and the checks that catch undeclared patches.

    15k GitHub stars~4.6k tokensUpdated today
    Auto-check passed

Works with

Questions about VPhone Guest Control

What does VPhone Guest Control do?

Drives a virtual iPhone running on an Apple Silicon Mac through the vphone-launchpad-cli, from checking host setup and starting a machine to tapping, typing and installing apps in the guest. bundle, while vphone-launchpad-cli is a stateless client whose commands also show up in the app's own window and history. The skill insists on using the CLI for everything, since any other route, such as sudo, a separate vphone-cli copy, or devicectl, either lacks the right entitlements, bypasses checks the app records, or times out against these guests.

When should I use VPhone Guest Control?

VPhone Guest Control fits situations like: setting up vphone and creating a new virtual iPhone machine; installing an IPA or a jailbreak bootstrap into a running vphone guest; automating taps, swipes or screenshots inside a vphone guest; debugging a vphone guest that shows a black screen or won't boot.

How do I install VPhone Guest Control in Claude Code?

Run `npx skills add Lakr233/vphone-cli --skill vphone-guest-control -a claude-code`. Or copy the skill folder (Skills/vphone-guest-control in Lakr233/vphone-cli) into .claude/skills/vphone-guest-control in your project. Claude Code loads it when a task matches its description.

How do I install VPhone Guest Control in Codex?

Run `npx skills add Lakr233/vphone-cli --skill vphone-guest-control -a codex`. Or copy the skill folder (Skills/vphone-guest-control in Lakr233/vphone-cli) into .agents/skills/vphone-guest-control in your project. Codex loads it when a task matches its description.

Can I use VPhone Guest Control in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Lakr233/vphone-cli --skill vphone-guest-control -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/vphone-guest-control, .gemini/skills/vphone-guest-control, .github/skills/vphone-guest-control and .opencode/skills/vphone-guest-control in your project.

What does VPhone Guest Control need to run?

Going by SKILL.md and its folder, VPhone Guest Control needs the command-line tools its instructions call (bundle and xcrun). Our summary lists: An Apple Silicon Mac; vphone-launchpad and vphone-launchpad-cli installed.

Does VPhone Guest Control access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is VPhone Guest Control safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does VPhone Guest Control use?

VPhone Guest Control is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does VPhone Guest Control use?

About 1.6k tokens (SKILL.md is roughly 6.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 14k tokens, read only when the agent opens those files.

What are the alternatives to VPhone Guest Control?

Skills that share tags, products or a category with VPhone Guest Control: Apple Crash Log .NET Symbolication (dotnet/skills, 5.6k stars), Orca iOS Simulator Control (stablyai/orca, 89k stars), Phoneagent (rounak/PhoneAgent, 800 stars) and Flowdeck (SwiftedMind/Tessera, 116 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains VPhone Guest Control?

Lakr233 (a GitHub user) maintains it in Lakr233/vphone-cli, which has 15,171 GitHub stars. The repository holds 3 skills in this directory. The repository was last updated on October 10, 2026.

Source: Lakr233/vphone-cli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.