Agent skill

Cloudflare Access App Setup

by mizchi in mizchi/skills

One-shot Cloudflare Access self-hosted application provisioning via the API — app + email allowlist policy + service token.

No licenceAuto-check: notesDevOps & Cloud

Install Cloudflare Access App Setup

skills CLI
$ npx skills add mizchi/skills --skill cloudflare-access-app-setup -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install mizchi/skills cloudflare-access-app-setup --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/mizchi/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/cloudflare-access-app-setup .claude/skills/cloudflare-access-app-setup && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
cloudflare-access-app-setup
GitHub stars
356
Token cost
~730 tokens
SKILL.md length
309 words
Files
3 (incl. assets)
Skills in repo
69
Repo updated
First seen
Licence
None found

At a glance

One-shot Cloudflare Access self-hosted application provisioning via the API — app + email allowlist policy + service token.

  • You want to gate a Worker behind Access without a full Pulumi stack
  • SKILL.md covers When to invoke, What's in here, When NOT to invoke and Source
  • Runs TypeScript scripts from its folder; calls pnpm; reaches api.cloudflare.com; needs CLOUDFLARE_API_TOKEN
  • Tasks that involve Infrastructure as code

What it does

Cloudflare Access App Setup is an agent skill from mizchi/skills. One-shot Cloudflare Access self-hosted application provisioning via the API — app + email allowlist policy + service token. Use when you want to gate a Worker behind Access without a full Pulumi stack.

Its SKILL.md is about 730 tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including assets (for example `README.md` and `assets/scripts/setup-access-app.ts`).

It sits in DevOps & Cloud, covering Infrastructure as code. It works with Cloudflare and Pulumi. The repository describes itself as: Agent skills by mizchi, distributed via APM.

When your agent uses it

  • You want to gate a Worker behind Access without a full Pulumi stack
  • Tasks that involve Infrastructure as code

Example prompts

  • “/cloudflare-access-app-setup”

Requirements

  • Node.js
  • A credential in CLOUDFLARE_API_TOKEN

What it can do on your machine

Read from SKILL.md and the folder at commit 62f5808. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships script files (TypeScript), which the agent can run.

    Shell commands in SKILL.md call:

    • pnpm

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • api.cloudflare.com

    Also links to:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • CLOUDFLARE_API_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Cloudflare Access App Setup loads about 730 tokens when it runs. Until then it costs about 57 tokens; SKILL.md has 309 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~57
When it runs · the whole SKILL.md, loaded when a task matches
~730

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:26
    n client_id + client_secret (paste into `.env.cloudflare`).

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 309 words (~730 tokens).

“Creates a self-hosted Cloudflare Access application, an email-allowlist policy, and a service token for headless CLI / CI access. Idempotent: re-running updates the existing app rather than creating duplicates.”

— opening of SKILL.md by mizchi
name
cloudflare-access-app-setup

Read the full SKILL.md on GitHub

Files

SKILL.md and 2 other files (assets) in cloudflare-access-app-setup of mizchi/skills.

  • SKILL.md
  • README.md
  • assets/scripts/setup-access-app.ts

Open the folder on GitHubat commit 62f5808

Compare with similar skills

Cloudflare Access App Setup next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Cloudflare Access App Setup compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Cloudflare Access App Setup this skillmizchi/skills356—~730Automated safety check: NotesNone
Cloudflarehodgef/apiker1277 repos~2.2kAutomated safety check: PassMIT
Cloudflaredmmulroy/cloudflare-skill727—~1.6kAutomated safety check: PassMIT
Spacectlspacelift-io/spacectl173—~2.3kAutomated safety check: PassMIT
AWS Native Runtime Investigationpulumi/pulumi-aws-native108—~753Automated safety check: PassApache-2.0
Trace Pulumi Diffmarin-community/marin3.9k—~663Automated safety check: PassApache-2.0

Similar skills

  • Cloudflare

    hodgef/apiker

    Comprehensive Cloudflare platform skill covering Workers, Pages, storage (KV, D1, R2), AI (Workers AI, Vectorize, Agents SDK), feature flags (Flagship), networking (Tunnel, Spectrum), security (WAF…

    127 GitHub starsUsed in 7 repos~2.2k tokens
    DevOps & CloudAuto-check passed
  • Cloudflare

    dmmulroy/cloudflare-skill

    Comprehensive Cloudflare platform skill covering Workers, Pages, storage (KV, D1, R2), AI (Workers AI, Vectorize, Agents SDK), networking (Tunnel, Spectrum), security (WAF, DDoS), and…

    727 GitHub stars~1.6k tokensUpdated 8 mo ago
    DevOps & CloudAuto-check passed
  • Spacectl

    spacelift-io/spacectl

    Manage Spacelift stacks, runs, modules, policies, and infrastructure via CLI.

    173 GitHub stars~2.3k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • AWS Native Runtime Investigation

    pulumi/pulumi-aws-native

    Official

    Use after triage or repository evidence establishes that an issue involves Pulumi AWS Native runtime behavior across the Pulumi provider protocol, generated CloudFormation metadata, and AWS Cloud…

    108 GitHub stars~753 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Trace Pulumi Diff

    marin-community/marin

    Run a read-only preview for a specified Marin infra/pulumi stack and trace each pending resource change to merged pull requests since its latest successful update when that update records a clean…

    3.9k GitHub stars~663 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Audit infrastructure-as-code artifacts for unsafe defaults, policy gaps, privilege exposure, control drift, and deployment-impact evidence.

    135 GitHub stars~649 tokensUpdated 1 mo ago
    DevOps & CloudAuto-check passed

More from mizchi/skills

All 69 skills in this repo
  • Publish Agent Skill

    mizchi/skills

    Package, publish, verify and update an agent skill through a Claude Code plugin marketplace, APM or the npx skills CLI.

    356 GitHub stars~1.7k tokensUpdated 6 days ago
    Auto-check passed
  • AI Index

    mizchi/skills

    Method and tooling for measuring how AI-generated a piece of prose reads, in Japanese or English.

    356 GitHub stars~3.6k tokensUpdated 6 days ago
    Auto-check passed
  • Cloudflare Deploy

    mizchi/skills

    Deploy applications and infrastructure to Cloudflare with the cf CLI and typed cloudflare.config.ts.

    356 GitHub stars~2.9k tokensUpdated 6 days ago
    Auto-check: notes
  • Review Image

    mizchi/skills

    Review screenshots or other images with OpenRouter vision models via bundled Deno scripts.

    356 GitHub stars~1.3k tokensUpdated 6 days ago
    Auto-check passed
  • Post-generation safety checks for sqlc-gen-moonbit + Cloudflare D1.

    356 GitHub stars~995 tokensUpdated 6 days ago
    Auto-check passed
  • Apm Usage

    mizchi/skills

    Reference for APM (Agent Package Manager) — apm.yml syntax, install / uninstall / update commands, target detection, lockfile workflow.

    356 GitHub stars~1.9k tokensUpdated 6 days ago
    Auto-check passed

Categories

Questions about Cloudflare Access App Setup

What does Cloudflare Access App Setup do?

One-shot Cloudflare Access self-hosted application provisioning via the API — app + email allowlist policy + service token. Cloudflare Access App Setup is an agent skill from mizchi/skills. One-shot Cloudflare Access self-hosted application provisioning via the API — app + email allowlist policy + service token.

When should I use Cloudflare Access App Setup?

Cloudflare Access App Setup fits situations like: you want to gate a Worker behind Access without a full Pulumi stack; tasks that involve Infrastructure as code.

How do I install Cloudflare Access App Setup in Claude Code?

Run `npx skills add mizchi/skills --skill cloudflare-access-app-setup -a claude-code`. Or copy the skill folder (cloudflare-access-app-setup in mizchi/skills) into .claude/skills/cloudflare-access-app-setup in your project. Claude Code loads it when a task matches its description.

How do I install Cloudflare Access App Setup in Codex?

Run `npx skills add mizchi/skills --skill cloudflare-access-app-setup -a codex`. Or copy the skill folder (cloudflare-access-app-setup in mizchi/skills) into .agents/skills/cloudflare-access-app-setup in your project. Codex loads it when a task matches its description.

Can I use Cloudflare Access App Setup in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add mizchi/skills --skill cloudflare-access-app-setup -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/cloudflare-access-app-setup, .gemini/skills/cloudflare-access-app-setup, .github/skills/cloudflare-access-app-setup and .opencode/skills/cloudflare-access-app-setup in your project.

What does Cloudflare Access App Setup need to run?

Going by SKILL.md and its folder, Cloudflare Access App Setup needs TypeScript for the scripts in its folder, the command-line tools its instructions call (pnpm) and credentials named CLOUDFLARE_API_TOKEN. Our summary lists: Node.js; A credential in CLOUDFLARE_API_TOKEN.

Does Cloudflare Access App Setup access the network?

SKILL.md names 2 domains. In commands or code: api.cloudflare.com; the agent is likely to contact it when it follows the instructions. As links in the text: github.com. This is read from the text; nothing was executed.

Is Cloudflare Access App Setup safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Cloudflare Access App Setup use?

No licence was found for Cloudflare Access App Setup or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Cloudflare Access App Setup use?

About 730 tokens (SKILL.md is roughly 2.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Cloudflare Access App Setup?

Skills that share tags, products or a category with Cloudflare Access App Setup: Cloudflare (hodgef/apiker, 127 stars), Cloudflare (dmmulroy/cloudflare-skill, 727 stars), Spacectl (spacelift-io/spacectl, 173 stars) and AWS Native Runtime Investigation (pulumi/pulumi-aws-native, 108 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Cloudflare Access App Setup?

mizchi (a GitHub user) maintains it in mizchi/skills, which has 356 GitHub stars. The repository holds 69 skills in this directory. The repository was last updated on October 2, 2026.

Source: mizchi/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.