homelab-network-setup

homelab-network-setup is a skill for Claude Code, Codex from JunMystery/Agent-Guidance-Python. It costs 52 tokens per session (1,201 once invoked), scanned A, original, MIT.

A guide to planning and checking a home or small-lab network, including routers, switches, Wi-Fi access points, local DNS, network segments, and VPN access.

In plain words
What is it for?
Use it to design VLANs for trusted, guest, IoT, server, or management devices; plan Pi-hole or similar DNS; add WireGuard or other VPN access; and validate changes safely.
Why use it?
It reduces the risk of locking yourself out of the network or exposing administration tools while making changes.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/junmystery/agent-guidance-python/homelab-network-setup
Any agent
npx skills add JunMystery/Agent-Guidance-Python --skill homelab-network-setup
Clone the repo
git clone --depth 1 https://github.com/JunMystery/Agent-Guidance-Python

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for homelab-network-setup

README.md
[![agentmods](https://agentmods.dev/badge/skills/junmystery/agent-guidance-python/homelab-network-setup.svg)](https://agentmods.dev/skills/junmystery/agent-guidance-python/homelab-network-setup)
Your own site
<a href="https://agentmods.dev/skills/junmystery/agent-guidance-python/homelab-network-setup"><img src="https://agentmods.dev/badge/skills/junmystery/agent-guidance-python/homelab-network-setup.svg" alt="Measured on agentmods" height="20"></a>
Per session 52 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 1,201 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00052 $0.01201
Opus 5 $0.00026 $0.00600
Sonnet 5 $0.00010 $0.00240
Haiku 4.5 $0.00005 $0.00120

Measured yesterday against content hash e66653298603, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-05, from the pricing page.

Security

Grade A, and why

homelab-network-setup scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/homelab-network-setup/SKILL.md · 109 lines

How it starts

The opening of the file, as written. The whole thing — 109 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Homelab Network Setup and Readiness

Use this skill to design a home or small-lab network that can grow without needing a full rebuild, and to audit readiness before modifying router, VLAN, DNS, firewall, or VPN configuration.

When to Use

  • Planning a new home network or redesigning an ISP-router-only setup.
  • Splitting a flat network into trusted, IoT, guest, server, or management VLANs.
  • Moving DHCP clients to Pi-hole, AdGuard Home, Unbound, or another local DNS resolver.
  • Adding WireGuard, Tailscale, ZeroTier, or router-native VPN access.
  • Reviewing whether a network change can lock the operator out of the gateway.

Safety Rules

  • Keep the first step read-only: Audit inventory, risks, staged plan, validation, and rollback before issuing commands.
  • Never expose administration UIs directly to the public internet (gateway admin, DNS resolvers, SSH, NAS consoles, VPN management).
  • Require out-of-band console access before changing management VLANs, trunk ports, firewall default policies, or DHCP settings.
  • Keep a working path back to the internet before pointing the network at a new DNS resolver or VPN route.

Device Roles & Gateway Options

Internet
  |
Modem or ONT
  |
Gateway or router      NAT, firewall, DHCP, DNS, inter-VLAN routing
  |
Managed switch         wired clients, AP uplinks, optional VLAN trunks
  |
Access points          Wi-Fi only; ideally wired backhaul
Servers and NAS        stable addresses, DNS names, monitoring
Clients and IoT        DHCP pools, isolated later if VLANs are available
Gateway Option Best fit Notes
ISP router Basic internet only Limited control and often poor VLAN support
UniFi gateway Managed home network Good UI, ecosystem lock-in
OPNsense or pfSense Flexible homelab Strong VLAN, firewall, VPN, and DNS control
MikroTik Advanced network users Powerful, but easy to misconfigure
Linux router Tinkerers Document rollback before using as primary gateway

Read the full file on GitHub · 109 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 109 lines · 52 tokens per session scan A e66653298603

Subscribe to this mod's changes

homelab-network-setup is a skill published in the GitHub repository JunMystery/Agent-Guidance-Python (2 stars, last pushed 1mo ago), licensed MIT. It adds 52 tokens to every session and 1,201 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

myco:live-smoke-testing

Activate this skill when running, interpreting, extending, or debugging the live hardware smoke test harness in scripts/livesmoke.py. Covers all aspects of manifest-driven live testing against real UniFi hardware: .env credential setup, tool classification tiers, --phase flag selection to bound blast radius, the…

sirkirby/unifi-mcp · 185 tokens

myco:unifi-client-data-correctness

Apply this skill whenever modifying, debugging, or extending UniFi client data retrieval in the unifi-mcp monorepo — even if the user doesn't explicitly ask about correctness or fallback behavior. Covers five permanent architectural fixtures of clients.py: (1) choosing the right endpoint (/stat/sta for live clients…

sirkirby/unifi-mcp · 222 tokens

unifi-access

How to manage UniFi Access door control — locks, credentials, visitors, access policies, and events. Use this skill when the user mentions UniFi Access, door locks, door access, building access, NFC cards, PIN codes, visitor passes, access policies, access schedules, door readers, or any UniFi Access task.

sirkirby/unifi-mcp · 70 tokens

unifi-network-setup

Configure the UniFi Network MCP server for Claude Code, Codex, or OpenClaw — set controller host, credentials, and permissions.

sirkirby/unifi-mcp · 33 tokens

streamdeck-designer

Design, theme, and author complete Stream Deck layouts for the user's hardware using the streamdeck-mcp tools. Use whenever the user wants a custom Stream Deck setup, asks for a themed deck (e.g. "hello-kitty Twitch deck", "retrowave music controls", "a dev deck for this repo"), wants buttons or dials configured for…

verygoodplugins/streamdeck-mcp · 167 tokens

streamdeck-profile

Use this skill when you need to configure Elgato Stream Deck desktop profiles without taking USB control of the hardware.

verygoodplugins/streamdeck-mcp · 0 tokens