Fly
for LuumenAI

Read Fly apps, machines, and certificates; make changes as approved steps

Connect Fly and Luumen can answer questions about your apps without you opening a browser: what a machine is doing, which image tag is current, whether a certificate is valid, what the active token can reach. Changes — health check jobs, WireGuard peers, SSH keys, certificates — are previewed first and go through approval by default. Auth is an API key.

The Fly toolbox

45 tools: 30 read, 15 write. Reads answer instantly. Writes require approval by default. Everything is logged.

  • ReadCheck App Name AvailabilityValidate an app name for Fly.io app creation.
  • ReadCheck JobsExecute GraphQL queries against the Fly.io checkJobs endpoint.
  • ReadCheck User Only TokenCheck whether the authentication token only allows user access.
  • ReadFetch Nodes by IDsFetches a list of node objects from Fly.io given a list of IDs using the GraphQL nodes query.
  • ReadGet Add-OnFind a Fly.io add-on by ID, name, or provider.
  • ReadGet Add-On ProviderQuery information about a specific Fly.io add-on provider (extension) by name.
  • ReadGet app detailsRetrieve detailed information about a specific Fly.io application.
  • ReadGet CertificateRetrieve a certificate by its ID from Fly.io.
  • ReadGet Current Token InfoGet information about the current authentication token.
  • ReadGet Latest Image DetailsRetrieve the latest available tag details for a given image repository from Fly.io's registry.
  • ReadGet Latest Image TagRetrieve the latest available image tag for a Fly.io Docker repository.
  • ReadGet MachineGet a single machine by ID from Fly.io.
  • ReadGet Nearest RegionRetrieve the nearest Fly.io region to the requesting client based on network location.
  • ReadGet Node by IDFetch an object by its globally unique ID using Fly.io's GraphQL node query.
  • ReadGet OrganizationFind a Fly.io organization by slug using the GraphQL API.
  • ReadGet Personal OrganizationRetrieve the user's personal organization details from Fly.io.
  • ReadGet PlacementsGet placement recommendations for Machines in Fly.io regions.
  • ReadGet Platform InformationRetrieve Fly.io platform information including available regions, VM sizes, and flyctl version.
  • ReadGet Products and PricingRetrieve Fly.io product and price information via GraphQL.
  • ReadGet RegionsGet the list of available Fly.io regions with optional filtering.
  • ReadGet Viewer InfoRetrieve the authenticated user's account information from Fly.io.
  • ReadList Add-On PlansList available add-on service plans from Fly.io.
  • ReadList Add-OnsList add-ons associated with an organization in Fly.io.
  • ReadList AppsList all Fly Apps in an organization.
  • ReadList Apps via GraphQLList all Fly.io applications with details including volumes, services, and VMs using GraphQL.
  • ReadCheck LocationsRetrieve all available Fly.io health check locations.
  • ReadList MachinesList Fly.io machines using GraphQL API with pagination support.
  • ReadList Organization MachinesList all Machines across all apps in a Fly organization.
  • ReadValidate ConfigValidate a Fly.io app configuration.
  • ReadValidate WireGuard PeersValidate WireGuard peer IP addresses in a Fly.io organization.
  • WriteAdd WireGuard PeerAdd a WireGuard peer connection to a Fly.io organization for private network access. Approval by default
  • WriteCreate Health Check JobCreate a health check job for monitoring application endpoints in Fly.io. Approval by default
  • WriteCreate Check Job RunTriggers a run of an existing health check job on Fly.io. Approval by default
  • WriteCreate Delegated WireGuard TokenCreate a delegated WireGuard token for peer management in a Fly.io organization. Approval by default
  • WriteCreate Third-Party ConfigurationCreate a third-party service configuration for discharging macaroon caveats. Approval by default
  • WriteDelete Delegated WireGuard TokenDelete a delegated WireGuard token from a Fly.io organization. Approval by default
  • WriteDelete OrganizationDelete a Fly.io organization and all its associated resources using the GraphQL API. Approval by default
  • WriteDelete Remote BuilderDelete a remote builder configuration for a Fly.io organization. Approval by default
  • WriteDelete Third Party ConfigurationDelete a third-party service configuration from Fly.io. Approval by default
  • WriteDetach Postgres ClusterDetach a Postgres cluster from a Fly.io application, revoking access credentials. Approval by default
  • WriteEstablish SSH KeyEstablish an SSH key for a Fly.io organization. Approval by default
  • WriteIssue CertificateIssue an SSH certificate for accessing Fly.io infrastructure. Approval by default
  • WriteRemove WireGuard PeerRemove a WireGuard peer connection from a Fly.io organization. Approval by default
  • WriteSet Apps V2 DefaultConfigure whether new apps in an organization use Apps V2 by default on Fly.io. Approval by default
  • WriteUpdate Third-Party ConfigurationUpdate an existing third-party service configuration for discharging macaroon caveats. Approval by default

One prompt, start to finish

What a governed Fly run looks like inside Luumen.

Questions

How does LuumenAI connect to Fly?

Authorize once with API token. Luumen lists the scopes each action needs before you approve the connection, and credentials never appear in the chat.

Can LuumenAI change things in Fly on its own?

Read actions answer immediately. Anything that writes — add wireguard peer, create health check job, create check job run, create delegated wireguard token, and more — is shown as a plan and requires approval by default, including the 6 actions classified as destructive. Administrators configure that per tool, so you decide exactly which actions can ever run unattended.

Who gets access to the integration?

You decide. Actions are granted per agent, skill, and team, and per environment — production is not staging. Read access can be broad while writes stay narrow.

Is there an audit trail?

Every call to Fly — read or write, approved or declined — is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.

Put Fly to work with Luumen

Connect in minutes. Every action scoped, approved, and audited from day one.