The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the Portveil listing page.
Let an AI assistant see the devices on your Portveil account and move them between VPN locations.
"Move my scraper box to Finland." "Rotate every agent to a new location." "Which of my devices aren't protected right now?" "Rotate the scraper between the US and Finland every 15 minutes."
Moves are verified: a tool only reports success after the device has switched and the exit server in the new location confirms it sees that device.
| Tool | What it does | Needs |
|---|---|---|
list_devices | Every device: protected or not, where it exits, live speed (↓/↑ Mbps), remote control on/off | read |
list_locations | The locations you can move to | read |
get_device | One device's current state, including live speed and any rotation | read |
get_account | Plan and devices used | read |
list_activity | Recent moves, reconnects and changes, and which token made them | read |
move_device | Move a device to a country or city ("Finland", "US", "Helsinki") | control |
rotate_device | Move a device once to the next location | control |
start_rotation | Move a device automatically every N minutes (5–10080), optionally among chosen locations. Portveil runs the schedule, so the assistant can close | control |
stop_rotation | Turn scheduled rotation off | control |
reconnect_device | Re-establish a device's tunnel | control |
disconnect_device | Turn a device's VPN off (flagged destructive: a hint that tells well-behaved assistants to check with you first) | control |
add_device | Add a device. Phones and laptops (WireGuard app): creates it and saves its tunnel files locally, key never shown in chat. Linux servers and agent machines: gives the exact commands to run on that machine, which makes its own key and registers itself | admin (phones/laptops) |
update_device | Rename a device and/or turn its remote control on or off | admin |
remove_device | Remove a device for good (flagged destructive) | admin |
Tool names changed in 0.3.0 to one verb_noun pattern: device_status → get_device, account_info → get_account, recent_activity → list_activity, set_rotation → start_rotation.
Devices can be named loosely ("scraper" finds "Scraper box"); an ambiguous name returns the choices instead of guessing.
No account yet? Start free with just an email, no card.
acct_…).Claude Code
Claude Desktop (claude_desktop_config.json), Cursor (.cursor/mcp.json) and most other clients:
Hermes Agent: Hermes only installs npm packages older than 14 days, so install into its own folder and run it with node:
For Hermes to use it well (when to act, what to confirm first, how to add devices), also install the Portveil skill from ClawHub:
(Source: skills/portveil/SKILL.md.)
Devices must be running the Portveil app or the Portveil agent with remote control on. Devices using the plain WireGuard app are shown but can't be moved.
https://api.portveil.com (override with PORTVEIL_API). It stores nothing.