UniFi Network MCP server
Manage UniFi Network devices, clients, firewall, VLANs, VPNs, and more via MCP.
853 stars6.4k downloads/wk
Reviews
Write oneNobody has reviewed UniFi Network MCP yet.
If you have run it, two minutes of your experience saves the next person an afternoon.
UniFi Network MCP tools (97, 30 write)
write = sends, deletes, buys or postsRead from the package source without running it. The installed server may list more.
unifi_adopt_deviceAdopt a pending device into the Unifi Network by MAC address
unifi_archive_alarmArchive (resolve/dismiss) a specific alarm by its ID
unifi_archive_all_alarmsArchive (resolve/dismiss) all active alarms
unifi_authorize_guestAuthorize a guest client to access the guest network by MAC address
unifi_block_clientBlock a client/device from the network by MAC address
unifi_create_acl_rulewrite actionCreate a new MAC ACL rule for Layer 2 access control within a VLAN.
unifi_create_client_groupwrite actionCreate a new client group (network member group).
unifi_create_firewall_policywrite actionCreate a firewall policy. Auto-detects legacy vs zone-based format.
unifi_create_networkwrite actionCreate a new network (LAN/VLAN) with schema validation. Requires confirmation.
unifi_create_port_forwardwrite actionCreate a new port forwarding rule on your Unifi Network controller using schema validation.
unifi_create_qos_rulewrite actionCreate a new QoS rule on the Unifi Network controller. Requires confirmation.
unifi_create_routewrite actionCreate a new static route.
unifi_create_simple_firewall_policywrite actionCreate a firewall rule with a compact schema and optional preview.
unifi_create_simple_port_forwardwrite actionCreate port forward with compact input.
unifi_create_simple_qos_rulewrite actionCreate a QoS rule with a compact schema and optional preview.
unifi_create_usergroupwrite actionCreate a new user group.
unifi_create_voucherwrite actionCreate one or more hotspot vouchers.
unifi_create_wlanwrite actionCreate a new WLAN (SSID) with comprehensive validation.
unifi_delete_acl_rulewrite actionDelete a MAC ACL rule. Requires confirmation. WARNING: Removing an ALLOW rule
unifi_delete_client_groupwrite actionDelete a client group. Requires confirmation.
unifi_delete_firewall_policywrite actionDelete a firewall policy by ID.
unifi_force_reconnect_clientForce a client to reconnect to the network (kick) by MAC address
unifi_get_acl_rule_detailsGet detailed configuration for a specific MAC ACL rule by ID.
unifi_get_alertsGet recent alerts from the Unifi Network controller
unifi_get_client_detailsImplementation for getting client details.
unifi_get_client_group_detailsGet detailed configuration for a specific client group by ID.
unifi_get_client_statsGet statistics for a specific client/device
unifi_get_device_detailsImplementation for getting device details.
unifi_get_device_radioImplementation for getting focused radio config and stats for an AP.
unifi_get_device_statsImplementation for getting device stats.
unifi_get_dpi_statsGet Deep Packet Inspection (DPI) statistics (applications and categories)
unifi_get_event_typesGet list of event type prefixes.
unifi_get_firewall_policy_detailsGet detailed configuration for a specific firewall policy by ID.
unifi_get_network_detailsGet details for a specific network by ID.
unifi_get_network_healthImplementation for getting network health.
unifi_get_network_statsGet network statistics from the Unifi Network controller
unifi_get_port_forwardGet a specific port forwarding rule by ID from your Unifi Network controller.
unifi_get_qos_rule_detailsGet details for a specific QoS rule by ID.
unifi_get_route_detailsGet detailed information about a specific static route by its ID
unifi_get_site_settingsGet current site settings (e.g., country code, timezone, connectivity monitoring).
unifi_get_snmp_settingsGet current SNMP settings for the site (enabled state, community string).
unifi_get_system_infoImplementation for getting system info.
unifi_get_top_clientsGet a list of top clients by usage (sorted by total bytes)
unifi_get_traffic_route_detailsGet detailed information for a specific traffic route by ID.
unifi_get_usergroup_detailsGet detailed information about a specific user group by its ID
unifi_get_voucher_detailsGet detailed information about a specific voucher by its ID
unifi_get_vpn_client_detailsGet details for a specific VPN client by ID.
unifi_get_vpn_server_detailsGet details for a specific VPN server by ID.
unifi_get_wlan_detailsGet details for a specific WLAN by ID.
unifi_list_acl_rulesList MAC ACL rules (Policy Engine) for Layer 2 access control.
unifi_list_active_routesList all active routes from the routing table.
unifi_list_alarmsList alarms with optional archived filter.
unifi_list_blocked_clientsList clients/devices that are currently blocked from the network
unifi_list_client_groupsList client groups (network member groups).
unifi_list_clientsImplementation for listing clients.
unifi_list_devicesImplementation for listing devices.
unifi_list_eventsList events with optional filtering.
unifi_list_firewall_policiesLists firewall policies for the current UniFi site.
unifi_list_firewall_zonesList controller firewall zones (V2 API).
unifi_list_ip_groupsList IP groups configured on the controller (V2 API).
unifi_list_networksLists all networks configured on the UniFi Network controller for the current site using the V1 API structure.
unifi_list_port_forwardsList all port forwarding rules on your Unifi Network controller.
unifi_list_qos_rulesList all QoS rules on the Unifi Network controller for the current site.
unifi_list_routesList all user-defined static routes.
unifi_list_traffic_routesList all traffic routes.
unifi_list_usergroupsList all user groups.
unifi_list_vouchersList all hotspot vouchers.
unifi_list_vpn_clientsList all configured VPN clients (Wireguard, OpenVPN, etc).
unifi_list_vpn_serversList all configured VPN servers (Wireguard, OpenVPN, L2TP, etc).
unifi_list_wlansList all configured Wireless LANs (WLANs) on the Unifi Network controller.
unifi_lookup_by_ipQuick IP-to-hostname lookup. Returns only essential fields (hostname, name, MAC) to minimize token usage.
unifi_reboot_deviceReboot a specific device by MAC address
unifi_rename_clientRename a client/device in the Unifi Network controller by MAC address
unifi_rename_deviceRename a device in the Unifi Network controller by MAC address
unifi_revoke_voucherRevoke/delete a hotspot voucher by its ID, preventing further use
unifi_set_client_ip_settingsSet fixed IP and/or local DNS record for a client.
unifi_toggle_firewall_policyEnable or disable a specific firewall policy by ID.
unifi_toggle_port_forwardToggle a port forwarding rule on or off on your Unifi Network controller.
unifi_toggle_qos_rule_enabledEnable or disable a specific QoS rule by ID. Requires confirmation.
unifi_toggle_traffic_routeToggle a traffic route on/off by ID.
unifi_unauthorize_guestRevoke authorization for a guest client by MAC address
unifi_unblock_clientUnblock a previously blocked client/device by MAC address
unifi_update_acl_rulewrite actionUpdate an existing MAC ACL rule. Requires the full rule object (PUT replaces entire resource).
unifi_update_client_groupwrite actionUpdate an existing client group. Requires the full group object (PUT replaces entire resource).
unifi_update_device_radiowrite actionImplementation for updating AP radio settings.
unifi_update_firewall_policywrite actionUpdate specific fields of an existing firewall policy. Requires confirmation.
unifi_update_networkwrite actionUpdate specific fields of an existing network (LAN/VLAN). Requires confirmation. Note: Network isolation is only supported on 'corporate' networks, not 'guest' networks.
unifi_update_port_forwardwrite actionUpdate specific fields of an existing port forwarding rule using schema validation. Requires confirmation.
unifi_update_qos_rulewrite actionUpdate specific fields of an existing QoS rule. Requires confirmation.
unifi_update_routewrite actionUpdate an existing static route.
unifi_update_snmp_settingswrite actionUpdate SNMP settings for the site (enable/disable, set community string). Requires confirm=true to apply changes.
unifi_update_traffic_routewrite actionUpdate a traffic route's settings.
unifi_update_usergroupwrite actionUpdate an existing user group.
unifi_update_vpn_client_statewrite actionEnable or disable a specific VPN client by ID.
unifi_update_vpn_server_statewrite actionEnable or disable a specific VPN server by ID.
unifi_update_wlanwrite actionUpdate specific fields of an existing WLAN (SSID). Requires confirmation.
unifi_upgrade_deviceInitiate a firmware upgrade for a device by MAC address (uses cached firmware by default)
Public scan report
scanner v0.1.10 · 2026-09-27 · same rubric, same numbers if you re-run it
- Code scan49 source files scanned25/25
- –Live reliabilityno gateway calls yet and no remote to proben/a
- –Tool poisoningtools not inspected (local package is not executed); not countedn/a
- Auth qualitystatic API keys via environment variables6/15
- Maintenancelast push 1 days ago15/15
- Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10
Install UniFi Network MCP in Claude Code, Cursor or VS Code
claude mcp add unifi-network-mcp -- uvx unifi-network-mcp
What the publisher says
From the UniFi Network MCP repository's README, as published. We do not edit it. Read it on GitHub
UniFi MCP
Leverage agents and agentic AI workflows to manage your UniFi deployment.
Servers
Choose an integration
An MCP adapter can expose a small set of tools while using unifi-api-server as its backend. This keeps application-specific joins, branching, loops, and code isolation out of the general-purpose MCP servers.
Cloud Relay
Cloud Relay pairs the Cloudflare-hosted Worker gateway with the Relay sidecar on your LAN. The Worker provides the authenticated edge MCP endpoint, Durable Object broker, multi-location routing, token boundary, and deployment/management CLI. The Relay sidecar is a local MCP HTTP client and forwarder: it discovers configured local MCP servers over HTTP and maintains an outbound WebSocket to the Worker. Remote requests follow MCP client → Worker gateway → outbound WebSocket → Relay sidecar → local MCP servers over HTTP; the API server is not in this path. Read-only tools support annotation-based multi-location fan-out, while writes require explicit location targeting. Deploy the Worker with npm install -g unifi-mcp-worker && unifi-mcp-worker install, then see the Relay sidecar README to connect local servers.
REST + GraphQL API
Shortened. The full README is on GitHub.
Nothing above is checked by us. What we check is on the safety report.
UniFi Network MCP: common questions
- Is UniFi Network MCP server safe?
- Mostly: it is graded B (83/100). Read the UniFi Network MCP safety report
- How do I install UniFi Network MCP?
- It runs on your machine. Copy the Claude Code, Cursor, VS Code or Claude Desktop config from the install section.
- Does UniFi Network MCP need an API key?
- Yes. The registry entry asks for
UNIFI_USERNAME,UNIFI_PASSWORD,UNIFI_API_KEY. - Is UniFi Network MCP maintained?
- The last commit was in the last day (2026-09-27). The latest release is v0.7.8.