Security
UniFi On Prem MCP connector
The UniFi On Prem connector lets Claude, ChatGPT, Cursor, or any MCP client manage the people in your UniFi access system, creating users, assigning NFC cards, PIN codes, touch passes, license plates, and access policies, with every change logged.
-
How it connects. Connects with an API key. The credential goes into a vault nobody reads back.
-
One address. https://api.elaichi.ai/mcp, the same for every user.
-
Their own access. An agent never gets more than the person it acts for.
How to connect
How to connect UniFi On Prem to Claude, ChatGPT or Cursor
Two steps, about a minute.
In Elaichi
Connect UniFi On Prem once
-
Open Connections, choose Add connection, and pick UniFi On Prem.
-
Optionally set Share with to give a team access, then press Connect.
-
Paste an UniFi On Prem API key. One person generates a token in UniFi On Prem and pastes it once. Everyone else works through Share with, and never sees it.
The credential is vaulted. Nobody reads it back, not even the AI.
Add connection
Choose a connector.
In your AI client
Point it at one endpoint
Everyone in the organization uses the same address, and each person only ever reaches what their own account allows.
Connect UniFi On Prem to Claude
-
1
Open Customize, then Connectors.
-
2
Press Add.
-
3
Name it, paste the MCP server URL, then Continue.
https://api.elaichi.ai/mcp -
4
Sign in and approve.
On Team and Enterprise, an Owner adds it once. Everyone else turns it on for themselves.
Connect UniFi On Prem to ChatGPT
-
1
Open Plugins, then press the + button.
-
2
Name it and paste the endpoint into Server URL.
https://api.elaichi.ai/mcp -
3
Leave Authentication on OAuth, then tick the risk acknowledgement.
-
4
Press Create, then sign in and approve.
Works on the web today. The plugin directory lives at chatgpt.com/plugins.
Connect UniFi On Prem to Cursor
-
1
Open
~/.cursor/mcp.json. -
2
Add the endpoint under
mcpServers.https://api.elaichi.ai/mcp -
3
Reload Cursor, then sign in and approve.
~/.cursor/mcp.json
{
"mcpServers": {
"elaichi": {
"url": "https://api.elaichi.ai/mcp"
}
}
}
Set up per machine, so repeat it on each computer you work from.
Connect UniFi On Prem to any MCP client
-
1
Add the endpoint as a remote MCP server.
https://api.elaichi.ai/mcp -
2
Sign in and approve.
{
"mcpServers": {
"elaichi": {
"url": "https://api.elaichi.ai/mcp"
}
}
}
The Elaichi Agent already has these tools, with nothing to set up.
Use cases
What teams do with UniFi On Prem through Elaichi
Every one of these runs inside the access the person already has, and lands in the same audit log.
-
HR
Set up building access on day one
Create the new hire as a UniFi On Prem user, add them to the right user group, and assign their access policy and PIN code before they walk in on Monday.
-
Facilities
Replace a lost badge in seconds
Unassign the missing NFC card from the person's UniFi On Prem user and assign the new one, without opening the controller or waiting for IT.
-
Security
Check who can open which doors
Ask which access policies a UniFi On Prem user holds, or list everyone in a user group, before an audit or right after a change.
-
Office management
Register a contractor's license plate for parking
Assign the plate to the contractor's UniFi On Prem user for the week and remove it when the job ends, so the gate stops recognizing it.
-
IT
Move a whole team to phone entry
Batch assign touch passes to a department's UniFi On Prem users in one go instead of handling each person individually.
-
Security
Revoke access the moment someone leaves
Unassign the departing employee's PIN code, NFC card, touch pass, and license plate in UniFi On Prem, or delete their user entirely, before they reach the parking lot.
Try asking
- “List all UniFi On Prem users without an access policy.”
- “Assign a PIN code to the new warehouse contractor.”
- “Which users still hold NFC cards after leaving?”
AI tools
UniFi On Prem tools for your AI agents
109 tools are ready to call through Elaichi's MCP endpoint the moment you connect UniFi On Prem, governed by the same roles, restrictions, and audit log as everything else in Elaichi.
No tools match your search.
See it in Elaichi
What connecting UniFi On Prem gets you
6 screens from the product, each doing one job for your UniFi On Prem account.
The agent
Ask about UniFi On Prem access in plain language.
Answers come from live users, access policies and NFC card assignments.
- users
- access policies
- nfc cards
- pin codes
Ask Elaichi to work across your apps.
List all UniFi On Prem users without an access policy.
Assign a PIN code to the new warehouse contractor.
Which users still hold NFC cards after leaving?
Also runs in Claude, ChatGPT or Cursor
MCP clients
One endpoint connects Claude, ChatGPT and Cursor.
Every client reaches UniFi On Prem over OAuth, no SDK, no shared key.
Copy the endpoint
Tool catalog
109 UniFi On Prem tools are ready to call.
Users, access policies, PIN codes and touch passes, with no custom code.
- Create a UniFi On Prem user
- Update a UniFi On Prem user by ID
- Get single UniFi On Prem user by ID
- List all UniFi On Prem users
Toolboxes
Each team gets its own UniFi On Prem toolbox.
Curate one toolbox for facilities, another for IT security, another for HR onboarding.
- Facilities
- IT Security
- People Ops
- Front Desk
Shared connections
Teammates use the connection, never the credential.
See who connected each UniFi On Prem account and which teams share it.
- HQ Building
- Warehouse North
- Datacenter
- Front Desk
Audit log
Every badge and policy change has a name on it.
When, who, what happened, type and resource for each UniFi On Prem call.
- When
- Who
- What happened
- Type
Launching soon
From answering questions to doing the work
A person no longer has to ask. A trigger starts the work, inside the same permissions and the same audit log as everything else. Automations and live dashboards are launching soon, on the Black plan.
Automations
A schedule runs the whole access review.
Fetch users, group them, draft a digest, get approval, post back to UniFi On Prem.
UniFi On Prem digest
Run 418 · started 2 minutes ago · on behalf of Emma Laurent
-
✓
Schedule
Every weekday at 08:00
0.2s -
✓
Fetch users
UniFi On Prem
1.4s -
✓
Group by owner
Transform
0.1s -
✓
Draft the digest
Agent step
Ran with 4 tools, returned a structured summary
6.2s -
Approve the digest
Needs approval
Assigned to Michael Brennan
Approve Deny -
Post the digest
UniFi On Prem
Queued
Collections and dashboards
Access numbers arrive before anyone asks.
Users created over 14 days, broken down by team, refreshed on a schedule.
UniFi On Prem health
Refreshed 4 minutes ago · every 15 minutes · from the users collection
Users
1,284 ↓ 12%
Access policies
96 ↓ 8%
Needs attention
3 ↑ 2
Updated this week
412 ↑ 9%
Users created
Last 14 days
By team
Share of activity
HQ Building 34%
Warehouse North 27%
Datacenter 21%
Front Desk 18%
Related connectors
More from the catalog
FAQ
Frequently asked questions
How do I connect UniFi On Prem to Claude?
Two steps. In Elaichi, pick UniFi On Prem from the connector catalog and paste in the API key from your UniFi controller, there is no OAuth application to register and no client ID or secret to generate. Then in Claude open Customize, then Connectors, then Add, and paste https://api.elaichi.ai/mcp. Sign in with your Elaichi account and UniFi On Prem is ready to use.
Does UniFi On Prem work with ChatGPT and Cursor as well as Claude?
Yes. Once UniFi On Prem is connected in Elaichi, the same endpoint, https://api.elaichi.ai/mcp, works in Claude, ChatGPT, Cursor, any other MCP client, and the Elaichi Agent. You connect UniFi On Prem once and every client picks it up.
What can an AI agent actually do with my UniFi On Prem data?
An agent can create and update UniFi On Prem users, search for a person, upload their profile picture, and put them in the right user group. It can assign or remove NFC cards, PIN codes, touch passes, license plates, and access policies, and tell you which policies someone currently holds. Because UniFi On Prem has a lot of actions, short concrete asks like "assign a PIN to Maria Lopez" work better than long paragraphs.
Does connecting UniFi On Prem give the AI control of every door and every user?
No. Every call to UniFi On Prem runs inside the access of the person who signed in, so the AI can only see and change the users, groups, and policies that person could already manage. Elaichi can narrow that further with restrictions, but it never widens it beyond what UniFi On Prem itself allows that person.
Can I stop an agent from deleting or changing things in UniFi On Prem?
Yes. Restrictions in Elaichi work per action, so you can allow searching and listing UniFi On Prem users while blocking deletion, or blocking changes to access policies. A blocked action is never advertised to Claude, ChatGPT, or any other client, so no prompt can reach it.
What happens to a UniFi On Prem connection when someone leaves?
Offboarding that person in Elaichi ends their access to UniFi On Prem through every client at once. A shared UniFi On Prem connection keeps working for everyone else on the team. If you ever want to remove UniFi On Prem entirely, disconnecting it once in Elaichi removes it from Claude, ChatGPT, Cursor, and every other client.
Put UniFi On Prem in front of your team
Fourteen days on Gold, no credit card. Connect it once and pick what each team can call.