Catalog
github/namecheap

github

namecheap

Manage DNS records for domains registered with Namecheap via their API. List domains, view/add/update/remove DNS host entries (A, AAAA, CNAME, MX, TXT, etc.), and guide users through API setup including public IP detection and credential configuration. Use when the user mentions Namecheap, DNS records, domain management, or wants to add/change/remove A records, CNAME records, MX records, or TXT records for their domains.

v1.0Latest
New~1.7kUpdated Jun 26, 2026

Namecheap DNS Management

UTILITY SKILL — manages DNS records via the Namecheap API. USE FOR: "add DNS record", "update A record", "manage Namecheap domains", "set CNAME", "add MX record", "add TXT record", "list my domains", "show DNS records", "namecheap setup", "configure namecheap API", "what is my public IP" DO NOT USE FOR: domain registration/purchase, SSL certificate management, hosting configuration, non-Namecheap DNS providers

Workflow

First-time Setup

Before executing any API commands, verify credentials are configured:

  1. Check for existing config — look for ~/.namecheap-api
  2. If not configured, guide the user through setup: a. Show public IP — run python3 namecheap.py public-ip to display the user's public IP b. Instruct IP whitelisting — tell the user to go to https://ap.www.namecheap.com/settings/tools/apiaccess/, enable API (select ON), and whitelist the displayed IP c. Have the user run setup themselves — ask the user to run python3 namecheap.py setup directly in their own terminal. The script prompts for the username and reads the API key with a hidden prompt (getpass), writes ~/.namecheap-api with chmod 600, and validates the connection. Never ask the user to paste their API key into the chat, and never log, echo, or display the API key value. If you cannot run an interactive terminal for the user, instruct them to run setup themselves, or to export NAMECHEAP_API_USER and NAMECHEAP_API_KEY as environment variables in their own shell — rather than collecting the secret via ask_user. d. Confirm — once the user reports setup succeeded, proceed with DNS operations.

DNS Operations

Use the namecheap.py script (bundled in this skill's directory) for all API interactions. It requires only Python 3 (standard library only — no pip install needed) and works the same on macOS, Linux, and Windows:

# Show public IP (for setup)
python3 namecheap.py public-ip

# Run setup flow
python3 namecheap.py setup

# List domains
python3 namecheap.py domains.getList

# Get nameservers for a domain (shows if using Namecheap DNS or custom)
python3 namecheap.py domains.dns.getList --domain example.com

# Get DNS records for a domain
python3 namecheap.py domains.dns.getHosts --domain example.com

# Add a single record (preserves existing records)
python3 namecheap.py dns.addHost --domain example.com --type A --name www --address 1.2.3.4 --ttl 1800

# Remove a single record
python3 namecheap.py dns.removeHost --domain example.com --type A --name www --address 1.2.3.4

# Replace all records from a JSON file
python3 namecheap.py domains.dns.setHosts --domain example.com --hosts records.json

# Switch to Namecheap default DNS
python3 namecheap.py domains.dns.setDefault --domain example.com

# Switch to custom nameservers
python3 namecheap.py domains.dns.setCustom --domain example.com --nameservers ns1.cloudflare.com,ns2.cloudflare.com

# Get email forwarding rules
python3 namecheap.py domains.dns.getEmailForwarding --domain example.com

# Set email forwarding (single rule)
python3 namecheap.py domains.dns.setEmailForwarding --domain example.com --mailbox info --forward-to user@gmail.com

# Set email forwarding (from JSON file)
python3 namecheap.py domains.dns.setEmailForwarding --domain example.com --forwards forwards.json

# Create a child nameserver (glue record)
python3 namecheap.py domains.ns.create --domain example.com --nameserver ns1.example.com --ip 1.2.3.4

# Delete a child nameserver
python3 namecheap.py domains.ns.delete --domain example.com --nameserver ns1.example.com

# Get nameserver info
python3 namecheap.py domains.ns.getInfo --domain example.com --nameserver ns1.example.com

# Update nameserver IP
python3 namecheap.py domains.ns.update --domain example.com --nameserver ns1.example.com --old-ip 1.2.3.4 --ip 5.6.7.8

JSON file formats

domains.dns.setHosts --hosts records.json expects an array of objects with Namecheap API field names:

[
  { "HostName": "@", "RecordType": "A", "Address": "1.2.3.4", "TTL": 1800 },
  { "HostName": "www", "RecordType": "CNAME", "Address": "@", "TTL": 1800 },
  { "HostName": "@", "RecordType": "MX", "Address": "mail.example.com.", "TTL": 1800, "MXPref": 10 }
]

domains.dns.setEmailForwarding --forwards forwards.json expects an array of mailbox rules:

[
  { "MailBox": "info", "ForwardTo": "team@example.net" },
  { "MailBox": "sales", "ForwardTo": "owner@example.net" }
]

Behavior

  • Always check credentials first. Before any API operation, verify ~/.namecheap-api exists and is readable. If not, run the setup flow.
  • Show current records before modifying. Before adding or removing records, always fetch and display the current DNS records so the user can confirm the change.
  • Use ask_user to confirm destructive changes. Before removing records or replacing all records with setHosts, confirm with the user.
  • The Namecheap setHosts API replaces ALL records. Never call domains.dns.setHosts directly unless you have fetched all existing records first. Use dns.addHost and dns.removeHost for safe single-record operations — they handle the fetch-modify-write cycle internally.
  • Explain TTL in human terms. When the user asks about TTL, explain that 1800 = 30 minutes, 3600 = 1 hour, etc.
  • Handle multi-part TLDs. Domains like example.co.uk have SLD=example and TLD=co.uk. The script recognizes a built-in list of common second-level suffixes (e.g. co.uk, com.au, co.jp, com.br). This list is best-effort and not a full public-suffix database — if a domain with an unlisted multi-part suffix returns a 2019166 ("Domain not found") error, the SLD/TLD split was likely wrong. In that case, confirm the registered domain with the user and report the limitation.

Credential Storage

Credentials are stored in ~/.namecheap-api:

NAMECHEAP_API_USER="username"
NAMECHEAP_API_KEY="api-key-here"

This file must have 600 permissions (owner read/write only). Alternatively, the script reads credentials from the NAMECHEAP_API_USER and NAMECHEAP_API_KEY environment variables, which take precedence over the file when both are set.

Supported Record Types

A, AAAA, CNAME, MX, MXE, TXT, URL, URL301, FRAME

References

See references/namecheap-api.md for full API documentation including request/response formats.

Files3
3 files · 35.6 KB

Select a file to preview

Overall Score

88/100

Grade

A

Excellent

Safety

87

Quality

90

Clarity

88

Completeness

84

Summary

A comprehensive skill for managing DNS records on Namecheap domains via their public API. It provides an interactive Python CLI wrapper that handles credential setup, domain listing, DNS record operations (add/remove/replace), email forwarding, and child nameserver management. The skill includes detailed security guidance for credential handling and restricts operations to project-scoped Python execution.

Static Analysis Findings

1 finding

Patterns detected by deterministic static analysis before AI scoring. Hover over any finding code for detailed information and remediation guidance.

Destructive Operation
SEC-003File Permission Modification

File permission modification (chmod)

SKILL.mdchmod 600

Detected Capabilities

file readfile write (config file)shell execution (Python)HTTP requests (Namecheap API)public IP detectioncredential storage (encrypted/permission-protected)environment variable access

Trigger Keywords

Phrases that MCP clients use to match this skill to user intent.

manage namecheap DNSadd DNS recordupdate MX recordconfigure CNAMEset TXT recordnamecheap setuplist domainsemail forwardingchild nameserverswitch nameservers

Risk Signals

INFO

File permission modification (chmod 600) on ~/.namecheap-api

namecheap.py:save_config() line ~180, and SKILL.md credential storage section
INFO

Credentials stored in file with restricted permissions

~/.namecheap-api with chmod 600 (owner read/write only)
INFO

Environment variable access for NAMECHEAP_API_USER and NAMECHEAP_API_KEY

namecheap.py:load_config() function
INFO

Outbound HTTPS requests to Namecheap API and IP detection services

namecheap.py: api.namecheap.com, api.ipify.org, ifconfig.me
INFO

API key passed in URL query parameters (but never on command line)

namecheap.py:api_request() - URL is constructed internally, never exposed to shell
INFO

Interactive credential input via getpass

namecheap.py:cmd_setup() - hidden input for API key

Referenced Domains

External domains referenced in skill content, detected by static analysis.

ap.www.namecheap.comapi.ipify.orgapi.namecheap.comexample.comifconfig.me

Use Cases

  • Add or update DNS A records for a domain on Namecheap
  • Configure MX records for email delivery
  • Set up CNAME records for service pointing
  • Create TXT records for email verification (SPF, DKIM, ACME)
  • Switch a domain between Namecheap DNS and custom nameservers (e.g., Cloudflare)
  • Manage email forwarding rules for domain mailboxes
  • Create and update child nameservers (glue records) for domain delegation
  • List all domains in a Namecheap account
  • Query current DNS records before making modifications

Quality Notes

  • Excellent documentation: SKILL.md provides clear use cases, scope boundaries, and step-by-step setup instructions
  • Strong security practices: credentials handled via getpass (hidden input), stored with 600 permissions, never logged or echoed
  • Well-structured CLI with comprehensive command coverage (domains, DNS hosts, email forwarding, nameservers)
  • Error handling includes API error checking (_check_error), domain parsing fallbacks, and helpful user messages
  • Supported record types clearly documented (A, AAAA, CNAME, MX, TXT, URL, FRAME, etc.)
  • Multi-part TLD handling with best-effort public suffix list for domains like .co.uk
  • Practical examples throughout (JSON formats, TTL explanations, command syntax)
  • API reference documentation is thorough and includes response XML examples
  • Setup flow guidance explicitly instructs agent not to ask for API key via chat, uses setup script instead
  • Code is readable and uses standard library only (no external dependencies)
  • Includes limitation documentation (e.g., setHosts replaces all records, SLD/TLD parsing edge cases)
  • Public IP caching prevents redundant external calls
Model: claude-haiku-4-5-20251001Analyzed: Jun 26, 2026

Reviews

Add this skill to your library to leave a review.

No reviews yet

Be the first to share your experience.

Use github/namecheap in your dev environment

Command Palette

Search for a command to run...

github/namecheap | SkillRepo