An AXI-compliant wrapper around the
Cloudflare CLI (wrangler) — token-efficient
TOON output, structured errors, and agent-first
ergonomics for AI coding agents that operate Cloudflare via shell.
Built on axi-sdk-js, modeled on the
reference implementation gh-axi.
Early scaffold (v0). Read commands, plus write commands on Pages
(pages create, pages deploy), Workers (workers deploy,
workers secret put), Workers KV (kv create, kv put, kv delete) and
Email Routing. Writes are explicit verbs that name their
target in full and print what changed; nothing is inferred from context.
- Node.js >= 20
- wrangler installed
and logged in (
wrangler login, orCLOUDFLARE_API_TOKENset)
Commands that wrap wrangler use whatever credentials wrangler uses.
Commands that call the Cloudflare REST API directly (currently email,
because wrangler has no Email Routing surface) use CLOUDFLARE_API_TOKEN
if set, else the OAuth token wrangler login stored in its config
(~/.wrangler/config/default.toml, or ~/Library/Preferences/.wrangler/...
on macOS). That OAuth token carries the email_routing scope by default;
wrangler whoami lists the scopes you have.
pnpm add -g @simkimsia/cloudflare-axiOr run it without installing: npx -y @simkimsia/cloudflare-axi --help.
Check it: cloudflare-axi --version. Update later with cloudflare-axi update.
To work on it from a clone:
git clone https://github.com/simkimsia/cloudflare-axi
pnpm -C cloudflare-axi install
pnpm -C cloudflare-axi run build
pnpm add -g link:$PWD/cloudflare-axi # puts `cloudflare-axi` on PATHcloudflare-axi # dashboard: this directory's Worker, or Pages projects
cloudflare-axi deployments # recent deployments of the Worker configured in cwd
cloudflare-axi workers deploy --dry-run # bundle the Worker in cwd locally; nothing uploaded
cloudflare-axi workers deploy --name <worker> # real deploy; --name must match the config's Worker
cloudflare-axi workers secret list [--name <worker>] # secret names and types (never values)
printf %s "$VALUE" | cloudflare-axi workers secret put <KEY> --name <worker> # value on stdin only
cloudflare-axi pages # all Pages projects in your account
cloudflare-axi pages create <name> [--production-branch main]
cloudflare-axi pages deploy <dir> --project <name> [--branch main] # default branch main = production
cloudflare-axi pages deployments <name> [--environment production|preview]
cloudflare-axi kv # all Workers KV namespaces in your account
cloudflare-axi kv create SETTINGS # new namespace; prints the binding to add to wrangler.toml
cloudflare-axi kv keys SETTINGS [--prefix user:] [--limit 50] # keys in a namespace (title or id; or --binding NAME); fetches only --limit keys
cloudflare-axi kv get feed --namespace SETTINGS # value (JSON pretty-printed), truncated unless --full
cloudflare-axi kv get --key -feed --namespace SETTINGS # --key for a key starting with - (put/delete refuse such keys)
cloudflare-axi kv put feed --namespace SETTINGS --file ./feed.json [--ttl 3600] # or pipe it in with --stdin
cloudflare-axi kv delete feed --namespace SETTINGS # refuses a key that does not exist
cloudflare-axi whoami # logged-in Cloudflare account
cloudflare-axi email --zone example.com # Email Routing status, destinations, rules
cloudflare-axi email dns --zone example.com # MX/SPF/DKIM Cloudflare expects vs live DNS
cloudflare-axi email rules --zone example.com # routing rules incl. catch-all
cloudflare-axi email addresses # account destination addresses + verified state
cloudflare-axi email enable --zone example.com # turn on Email Routing (adds MX/SPF/DKIM when DNS is on Cloudflare)
cloudflare-axi email add-destination you@gmail.com # Cloudflare emails it a verification link
cloudflare-axi email forward '*' you@gmail.com --zone example.com # catch-all
cloudflare-axi email forward hello you@gmail.com --zone example.com # hello@example.com only
cloudflare-axi email unforward hello --zone example.com # delete that rule ('*' disables the catch-all)
cloudflare-axi --help
cloudflare-axi --version # fast path, never loads the command graph
cloudflare-axi update # self-update (built into axi-sdk-js)Set AXI_DEBUG=1 to print each forwarded wrangler argv and each REST method and path to stderr (no headers, bodies or tokens). stdout is unchanged.
Example output (TOON):
count: 2 Pages projects
projects[2]{name,domain,git,modified}:
my-docs,my-docs.pages.dev,no,6 days ago
my-book,my-book.pages.dev,yes,4 years ago
help[3]:
Run `cloudflare-axi pages deployments <name>` for a project's deployments
Run `cloudflare-axi pages deploy <dir> --project <name>` to publish a static directory
Run `cloudflare-axi whoami` to see which account this is
Install the bundled skill so your coding agent prefers cloudflare-axi over raw
wrangler, falls back to wrangler when a command is not wrapped yet, and
files the gap as an issue here (label agent-reported-gap):
npx skills add simkimsia/cloudflare-axi --skill cloudflare-axi -gThe skill is a discovery stub that defers to cloudflare-axi --help for current
command guidance. Source: skills/cloudflare-axi/SKILL.md.
pnpm install
pnpm run dev # run from source (tsx)
pnpm test # vitest (offline — real wrangler output as fixtures)
pnpm run build # tsc -> dist/
pnpm run format:checkRelease notes live in CHANGELOG.md and on GitHub Releases. release-please writes both from conventional commits, so do not edit the file by hand. Breaking changes, such as a renamed error code, are listed under "⚠ BREAKING CHANGES" and bump the minor version while below 1.0.
MIT