filescom-sites

SkillFiles & storage

A Site is the place you'll come to update site settings, as well as manage site-wide API keys.

Use filescom-sites in Claude, ChatGPT or Ahel Desktop

Free. Sign in, add filescom-sites and connect your AI. About a minute.

Also: Claude Code · Cursor · Codex

Then ask your AI: use the filescom-sites skill

Details

Instructions available. Your AI can read the instructions. Execution depends on the setup they require.

Add Ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.

filescom-sitesStart free

What this skill tells your AI

The instructions your AI receives, as published by files-com/files-cli in skills/filescom-sites/SKILL.md and read by Ahel’s review.

A Site is the place you'll come to update site settings, as well as manage site-wide API keys.

Most site settings can be set via the API.

All subcommands also accept the flags documented in CONTEXT.md (--api-key, --format, --workspace-id, --debug, and the pagination flags --cursor / --per-page / --max-pages on list). Those are not repeated below.

Commands

files-cli sites get

Show Site Settings.

No flags beyond the global ones.

files-cli sites get-usage

Get the most recent usage snapshot (usage data for billing purposes) for a Site.

No flags beyond the global ones.

files-cli sites update

Update Site Settings.

FlagTypeDescription
--namestringSite name
--subdomainstringSite subdomain
--domainstringCustom domain
--domain-hsts-headerboolSend HSTS (HTTP Strict Transport Security) header when visitors access the site via a custom domain?
--domain-letsencrypt-chainstringLetsencrypt chain to use when registering SSL Certificate for domain. No longer used as of 2026.
--emailstringMain email for this site
--reply-to-emailstringReply-to email for this site
--allow-bundle-namesboolAre manual Bundle names allowed?
--bundle-expirationint64Site-wide Bundle expiration in days
--welcome-email-enabledboolWill the welcome email be sent to new users?
--ask-about-overwritesboolIf false, rename conflicting files instead of asking for overwrite confirmation. Only applies to web interface.
--show-request-access-linkboolShow request access link for users without access? Currently unused.
--always-mkdir-parentsboolCreate parent directories if they do not exist during uploads? This is primarily used to work around broken upload clients that assume servers will perform this step.
--welcome-email-ccstringInclude this email in welcome emails if enabled
--welcome-email-subjectstringInclude this email subject in welcome emails if enabled
--welcome-custom-textstringCustom text send in user welcome email
--languagestringSite default language
--windows-mode-ftpboolDoes FTP user Windows emulation mode?
--default-time-zonestringSite default time zone
--desktop-appboolIs the desktop app enabled?
--desktop-app-session-ip-pinningboolIs desktop app session IP pinning enabled?
--desktop-app-session-lifetimeint64Desktop app session lifetime (in hours)
--mobile-appboolIs the mobile app enabled?
--mobile-app-session-ip-pinningboolIs mobile app session IP pinning enabled?
--mobile-app-session-lifetimeint64Mobile app session lifetime (in hours)
--folder-permissions-groups-onlyboolIf true, permissions for this site must be bound to a group (not a user).
--welcome-screenstringDoes the welcome screen appear?
--office-integration-availableboolIf true, allows users to use a document editing integration.
--office-integration-typestringWhich document editing integration to support. Files.com Editor or Microsoft Office for the Web.
--pin-all-remote-servers-to-site-regionboolIf true, we will ensure that all internal communications with any remote server are made through the primary region of the site. This setting overrides individual remote server settings.
--motd-textstringA message to show users when they connect via FTP or SFTP.
--motd-use-for-ftpboolShow message to users connecting via FTP
--motd-use-for-sftpboolShow message to users connecting via SFTP
--left-navigation-visibilityobjectVisibility settings for account navigation
--disable-all-ai-featuresboolIf true, all AI features are disabled for this site.
--ai-feature-availabilityobjectAvailability settings for AI features. Each feature requires the site_admins, workspace_admins, folder_admins, and all_users keys. Optional selected_group_members defaults to false; when true, members of at least one group in group_ids get access regardless of the other options. All availability options are additive: any enabled option matching the user grants access. Optional group_ids is an array of integer IDs of active groups on this site, from any workspace. Omitted or empty group_ids grants no access through selected_group_members and does not affect other options. Disabling all AI features overrides these settings.
--mcp-dcr-enabledboolIs OAuth DCR (dynamic client registration) for MCP enabled?
--additional-text-file-types[]stringAdditional extensions that are considered text files
--bundle-require-noteboolDo Bundles require internal notes?
--bundle-send-shared-receiptsboolDo Bundle creators receive receipts of invitations?
--bundles-default-owned-by-primary-groupboolIf true, new Share Links created by a user with a primary group will default to that group as owner.
--calculate-file-checksums-crc32boolCalculate CRC32 checksums for files?
--calculate-file-checksums-md5boolCalculate MD5 checksums for files?
--calculate-file-checksums-sha1boolCalculate SHA1 checksums for files?
--calculate-file-checksums-sha256boolCalculate SHA256 checksums for files?
--legacy-checksums-modeboolUse legacy checksums mode?
--migrate-remote-server-sync-to-syncboolIf true, we will migrate all remote server syncs to the new Sync model.
--as2-message-retention-daysint64Number of days to retain AS2 messages (incoming and outgoing).
--username-displaystringHow usernames are displayed in the web UI. Can be username_only, full_name_only, full_name_username, full_name_company, or full_name_username_company.
--session-expiry-minutesint64Session expiry in minutes
--ssl-requiredboolIs SSL required? Disabling this is insecure.
--sftp-insecure-ciphersboolIf true, we will allow weak and known insecure ciphers to be used for SFTP connections. Enabling this setting severely weakens the security of your site and it is not recommend, except as a last resort for compatibility.
--sftp-insecure-diffie-hellmanboolIf true, we will allow weak Diffie Hellman parameters to be used within ciphers for SFTP that are otherwise on our secure list. This has the effect of making the cipher weaker than our normal threshold for security, but is required to support certain legacy or broken SSH and MFT clients. Enabling this weakens security, but not nearly as much as enabling the full sftp_insecure_ciphers option.
--disable-files-certificate-generationboolIf set, Files.com will not set the CAA records required to generate future SSL certificates for this domain.
--fedrampboolAre FedRAMP security restrictions enabled for this site?
--user-lockoutboolWill users be locked out after incorrect login attempts?
--user-lockout-triesint64Number of login tries within user_lockout_within hours before users are locked out
--user-lockout-withinint64Number of hours for user lockout window
--user-lockout-lock-periodint64How many hours to lock user out for failed password?
--include-password-in-welcome-emailboolInclude password in emails to new users?
--allowed-countriesstringComma separated list of allowed Country codes
--allowed-ipsstringList of allowed IP addresses
--allow-user-level-2fa-overrideboolAllow the site-wide two-factor authentication requirement to be overriden on a per-user-basis?
--allow-user-level-allowed-ip-overrideboolAllow the site-wide allowed IP restriction to be overriden on a per-user-basis?
--allow-user-level-ssl-overrideboolAllow the site-wide FTP SSL requirement to be overriden on a per-user-basis?
--disallowed-countriesstringComma separated list of disallowed Country codes
--days-to-retain-backupsint64Number of days to keep deleted files
--max-prior-passwordsint64Number of prior passwords to disallow
--password-validity-daysint64Number of days password is valid
--password-min-lengthint64Shortest password length for users
--password-require-letterboolRequire a letter in passwords?
--password-require-mixedboolRequire lower and upper case letters in passwords?
--password-require-specialboolRequire special characters in password?
--password-require-numberboolRequire a number in passwords?
--password-require-unbreachedboolRequire passwords that have not been previously breached? (see https://haveibeenpwned.com/)
--require-logout-from-bundles-and-inboxesboolIf true, we will hide the 'Remember Me' box on Inbox and Bundle registration pages, requiring that the user logout and log back in every time they visit the page.
--dav-user-root-enabledboolUse user FTP roots also for WebDAV?
--sftp-user-root-enabledboolUse user FTP roots also for SFTP?
--disable-password-resetboolIs password reset disabled?
--immutable-filesboolAre files protected from modification?
--bundle-not-found-messagestringCustom error message to show when bundle is not found.
--bundle-password-requiredboolDo Bundles require password protection?
--bundle-require-registrationboolDo Bundles require registration?
--bundle-require-share-recipientboolDo Bundles require recipients for sharing?
--bundle-send-one-time-password-to-recipient-at-registrationboolIf true, new Share Links must send a one-time password to the recipient when they register. Requires bundle_require_share_recipient and cannot be enabled with bundle_password_required.
--bundle-registration-notificationsstringDo Bundle owners receive registration notification?
--bundle-activity-notificationsstringDo Bundle owners receive activity notifications?
--bundle-upload-receipt-notificationsstringDo Bundle uploaders receive upload confirmation notifications?
--document-edits-in-bundle-allowedboolIf true, allow public viewers of Bundles with full permissions to use document editing integrations.
--password-requirements-apply-to-bundlesboolRequire bundles' passwords, and passwords for other items (inboxes, public shares, etc.) to conform to the same requirements as users' passwords?
--prevent-root-permissions-for-non-site-adminsboolIf true, we will prevent non-administrators from receiving any permissions directly on the root folder. This is commonly used to prevent the accidental application of permissions.
--restrict-root-folder-behaviors-to-site-adminsboolIf true, only site admins may create, modify, or delete any behavior at the site root, or a skip that would disable one.
--root-folder-behaviors-apply-to-workspacesboolIf true, supported protective behaviors at the site root also apply within named workspaces. Requires restrict_root_folder_behaviors_to_site_admins to be enabled.
--opt-out-globalboolUse servers in the USA only?
--use-provided-modified-atboolAllow uploaders to set provided_modified_at for uploaded files?
--custom-namespaceboolIs this site using a custom namespace for users?
--non-sso-groups-allowedboolIf true, groups can be manually created / modified / deleted by Site Admins. Otherwise, groups can only be managed via your SSO provider.
--non-sso-users-allowedboolIf true, users can be manually created / modified / deleted by Site Admins. Otherwise, users can only be managed via your SSO provider.
--sharing-enabledboolAllow bundle creation
--snapshot-sharing-enabledboolAllow snapshot share links creation
--user-requests-enabledboolEnable User Requests feature
--user-requests-notify-adminsboolSend email to site admins when a user request is received?
--dav-enabledboolIs WebDAV enabled?
--files-com-remote-server-enabledboolAllow other Files.com sites to use this site's API keys for native Files.com Remote Server connections? Defaults to true and applies to all keys and workspaces on this site. When false, new pairings and access through existing connections are rejected without revoking keys or deleting connections. Re-enabling permits access again with usable keys. Does not disable this site's connections to other sites, ordinary API access, or Connected Sites.
--ftp-enabledboolIs FTP enabled?
--s3-compatible-endpoint-enabledboolIs the S3-compatible endpoint enabled for all users and workspaces on this site? Defaults to true. When false, user and group S3 permissions do not allow access.
--sftp-enabledboolIs SFTP enabled?
--sftp-finalize-partial-uploadsboolFinalize partial SFTP uploads from interrupted connections? Default: true.
--users-can-create-api-keysboolAllow users to create their own API keys?
--users-can-create-ssh-keysboolAllow users to create their own SSH keys?
--show-user-notifications-log-in-linkboolShow log in link in user notifications?
--sftp-host-key-typestringSftp Host Key Type
--active-sftp-host-key-idint64Id of the currently selected custom SFTP Host Key
--active-sftp-host-key-ids[]int64Ids of the selected custom SFTP Host Keys
--protocol-access-groups-onlyboolIf true, protocol access permissions on users will be ignored, and only protocol access permissions set on Groups will be honored. Make sure that your current user is a member of a group with API permission when changing this value to avoid locking yourself out of your site.
--revoke-bundle-access-on-disable-or-deleteboolAuto-removes bundles for disabled/deleted users and enforces bundle expiry within user access period.
--group-admins-can-add-usersboolAllow group admins to create users in their groups
--group-admins-can-manage-group-membershipsboolAllow group admins to add or remove existing users in their groups
--group-admins-can-delete-usersboolAllow group admins to delete users in their groups
--group-admins-can-enable-disable-usersboolAllow group admins to enable or disable users in their groups
--group-admins-can-modify-usersboolAllow group admins to modify users in their groups
--group-admins-can-bypass-user-lifecycle-rulesboolAllow group admins to exempt users in their groups from lifecycle rules
--group-admins-can-reset-passwordsboolAllow group admins to reset passwords for users in their groups
--group-admins-can-set-user-passwordboolAllow group admins to set password authentication method
--bundle-recipient-blacklist-free-email-domainsboolDisallow free email domains for Bundle/Inbox recipients?
--bundle-recipient-blacklist-domains[]stringList of email domains to disallow when entering a Bundle/Inbox recipients
--admins-bypass-locked-subfoldersboolAllow admins to bypass the locked subfolders setting.
--allowed-2fa-method-smsboolIs SMS two factor authentication allowed?
--allowed-2fa-method-totpboolIs TOTP two factor authentication allowed?
--allowed-2fa-method-webauthnboolIs WebAuthn two factor authentication allowed?
--allowed-2fa-method-yubiboolIs yubikey two factor authentication allowed?
--allowed-2fa-method-emailboolIs OTP via email two factor authentication allowed?
--allowed-2fa-method-staticboolIs OTP via static codes for two factor authentication allowed?
--allowed-2fa-method-bypass-for-ftp-sftp-davboolAre users allowed to configure their two factor authentication to be bypassed for FTP/SFTP/WebDAV?
--require-2faboolRequire two-factor authentication for all users?
--require-2fa-exempt-all-sso-usersboolIf true, SSO users using the default user-level two-factor authentication setting are exempt from the site-wide two-factor authentication requirement.
--require-2fa-user-typestringWhat type of user is required to use two-factor authentication (when require_2fa is set to true for this site)?
--color2-topstringTop bar background color
--color2-leftstringPage link and button color
--color2-linkstringTop bar link color
--color2-textstringPage link and button color
--color2-top-textstringTop bar text color
--site-headerstringCustom site header text for authenticated pages
--site-footerstringCustom site footer text for authenticated pages
--site-public-headerstringCustom site header text for public pages
--site-public-footerstringCustom site footer text for public pages
--login-help-textstringLogin help text
--use-dedicated-ips-for-smtpboolIf using custom SMTP, should we use dedicated IPs to deliver emails?
--email-footer-custom-textstringCustom footer text for system-generated emails (as Markdown). Supports standard strftime date/time patterns like %Y (4-digit year), %m (month), %d (day).
--smtp-addressstringSMTP server hostname or IP
--smtp-authenticationstringSMTP server authentication type
--smtp-fromstringFrom address to use when mailing through custom SMTP
--smtp-usernamestringSMTP server username
--smtp-portint64SMTP server port
--smtp-sslstringCustom SMTP encryption mode: if_available (default) uses STARTTLS when offered and otherwise sends credentials and messages unencrypted. A certificate-verified STARTTLS connection automatically changes if_available to require unless smtp_ssl is managed by a parent policy. require requires STARTTLS before authentication; require_implicit uses TLS from connection start; never disables TLS. TLS verifies the server certificate against smtp_address. Encryption is never automatically downgraded.
--ldap-enabledboolMain LDAP setting: is LDAP enabled?
--ldap-typestringLDAP type
--ldap-hoststringLDAP host
--ldap-host-2stringLDAP backup host
--ldap-host-3stringLDAP backup host
--ldap-portint64LDAP port
--ldap-secureboolUse secure LDAP?
--ldap-server-certificatestringHow to validate the LDAP server certificate. require_match validates the certificate chain and hostname; allow_any disables certificate validation.
--ldap-usernamestringUsername for signing in to LDAP server.
--ldap-username-fieldstringLDAP username field
--ldap-domainstringDomain name that will be appended to usernames
--ldap-user-actionstringShould we sync users from LDAP server?
--ldap-group-actionstringShould we sync groups from LDAP server?
--ldap-user-include-groupsstringComma or newline separated list of group names (with optional wildcards) - if provided, only users in these groups will be added or synced.
--ldap-group-exclusionstringComma or newline separated list of group names (with optional wildcards) to exclude when syncing.
--ldap-group-inclusionstringComma or newline separated list of group names (with optional wildcards) to include when syncing.
--ldap-base-dnstringBase DN for looking up users in LDAP server
--uploads-via-email-authenticationboolRequire email authentication, virus, and spam checks for incoming emails to Inboxes and Incoming Email Automations in every Workspace on this site?
--bundle-watermark-valueobjectPreview watermark settings applied to all bundle items. Uses the same keys as Behavior.value
--icon16-filefile(no description)
--icon16-deleteboolIf true, will delete the file stored in icon16
--icon32-filefile(no description)
--icon32-deleteboolIf true, will delete the file stored in icon32
--icon48-filefile(no description)
--icon48-deleteboolIf true, will delete the file stored in icon48
--icon128-filefile(no description)
--icon128-deleteboolIf true, will delete the file stored in icon128
--logo-filefile(no description)
--logo-deleteboolIf true, will delete the file stored in logo
--bundle-watermark-attachment-filefile(no description)
--bundle-watermark-attachment-deleteboolIf true, will delete the file stored in bundle_watermark_attachment
--login-page-background-image-filefile(no description)
--login-page-background-image-deleteboolIf true, will delete the file stored in login_page_background_image
--disable-2fa-with-delayboolIf set to true, we will begin the process of disabling 2FA on this site.
--ldap-password-changestringNew LDAP password.
--ldap-password-change-confirmationstringConfirm new LDAP password.
--redirect-old-subdomainboolIf true, and if changing the site subdomain, then create a redirect from the previous Files.com subdomain to the new Files.com subdomain.
--smtp-passwordstringPassword for SMTP server.

Signals

GitHub stars
46
Forks
4
Last commit
Oct 2026
Advanced
Item type
skill
Key
filescom-sites
Source
github.com/files-com/files-cli