Hermes Atlas
Plugins & extensions

Hermes Unraid

shanelord01/hermes-unraid

Hermes Agent plugin for Unraid with scoped GraphQL API access, logs and notifications, read-only by default

In short

Hermes Unraid is a Hermes Agent plugin that gives an agent visibility into an Unraid server, and optional control, through Unraid's built-in GraphQL API. It covers array health, disks, containers, logs and notifications, and is read-only by default.

What Hermes Unraid does

The plugin targets the common homelab case where Hermes runs in a Docker container on the Unraid host, so the agent's shell sees only its own container and you do not want to give it SSH or the Docker socket. It uses Unraid's official GraphQL API, which requires Unraid 7 or later. Dedicated tools report array state, parity checks, disks with temperature, containers, shares, CPU and memory, virtual machines, server logs and container logs. A /unraid slash command gives a quick status from a connected chat platform.

Every tool declares a RESOURCE:ACTION permission, the same vocabulary Unraid uses for API keys, and UNRAID_SCOPES selects which tools are registered, with *:READ_ANY as the default. Writes need that scope and a matching API key. A general unraid_api tool reaches the rest of the API, checking each field against permissions read from the live schema and refusing anything unrecognized. Actions such as container updates, power control, notification management and plugin installs are opt-in.

Key features

  • Tools for array, parity, disks, containers, shares, metrics, VMs and logs
  • RESOURCE:ACTION permission scopes set with UNRAID_SCOPES, defaulting to *:READ_ANY
  • Out-of-scope tools are never presented to the model
  • unraid_api tool with field-by-field permission checks that fail closed
  • Opt-in container updates, power control, notification management and plugin installs
  • /unraid slash command for quick status from chat platforms

When to use it

  • Asking Hermes whether the array is healthy and which disks are running hot
  • Tailing a container's logs from a chat without giving the agent SSH access
  • Checking for container updates and applying them only after granting a scope

Who it is for: Homelab owners who run Hermes Agent next to an Unraid server and want controlled access to its API.

How it fits with Hermes Agent

A plugin built for Hermes Agent, designed for setups where Hermes runs in a container on the Unraid host.

Requirements: Unraid 7 or later with its GraphQL API and an API key; UNRAID_SCOPES to widen permissions beyond read-only

FAQ

What is Hermes Unraid?

It is a Hermes Agent plugin that connects an agent to an Unraid server through Unraid's official GraphQL API. It is read-only by default, and write actions are enabled per scope.

Does Hermes Unraid work with Hermes Agent?

Yes, it is built for Hermes Agent and registers tools plus a /unraid slash command. It is designed for Hermes running in a Docker container on the Unraid host.

What do I need to run Hermes Unraid?

You need Unraid 7 or later with its GraphQL API and an API key. Set UNRAID_SCOPES to match the permissions you granted that key.

Similar plugins for Hermes Agent

All plugins

Related guides: How to install Hermes Agent · How to run Hermes Agent securely