
Security News
/Company News
Securing the Financial Frontier: How Capital One Uses Socket for Open Source Security
Capital One is partnering with Socket to proactively secure its open source supply chain.
@posteverywhere/cli
Advanced tools
Post and schedule to Instagram, TikTok, YouTube, LinkedIn, Facebook, X, Threads, Pinterest, Bluesky, Telegram & Discord from your terminal. Log in once, connect accounts, publish. Also works as a tool for Claude, Cursor and other AI agents (--json output)
Post and schedule to Instagram, TikTok, YouTube, LinkedIn, Facebook, X, Threads, Pinterest, Bluesky, Telegram, Discord and WordPress from your terminal — or hand the whole thing to an AI agent.
This repo is two things at once: a CLI you can drive by hand, and an Agent Skill that teaches Claude Code, Cursor, Codex and other agents how to use it. Every command emits JSON, so an agent can read the result of what it just did.
npx skills add posteverywhere/cli
That's it. Your agent now knows the whole command surface — connecting accounts, checking per-platform limits, scheduling, and reading back per-destination results. Then just ask:
"schedule a post to all my accounts for tomorrow at 9am"
Claude Code users can alternatively add it as a plugin, which brings auto-updates:
claude plugin marketplace add posteverywhere/cli
npm install -g @posteverywhere/cli
# …or run without installing:
npx @posteverywhere/cli <command>
posteverywhere login # opens your browser, saves a key to ~/.posteverywhere
posteverywhere connect instagram # OAuth flow; auto-detects the connected account
posteverywhere accounts # list connected accounts (+ ids & health)
posteverywhere post -c "Hello 🚀" -a 123,456
For CI or a headless agent, skip login and set a key from Settings → Developers:
export POSTEVERYWHERE_API_KEY=pe_live_...
| Command | What it does |
|---|---|
login / logout | Device-flow login (browser approval); remove saved credentials |
whoami | The authed account, plan and remaining quota |
accounts | Connected social accounts, with ids and health |
platform-rules [platform] | Character limits, media constraints and supported features |
connect <platform> | Connect a new account |
reconnect <accountId> | Re-authorize an account whose token expired |
account:health <id> | Why one account can't post |
post -c <text> -a <ids> [-s <iso>] [-m <mediaIds>] | Publish now, or schedule with -s |
post -a <ids> --title <t> --body-file <md> [--wp-status draft] [--tags a,b] [--categories c] | WordPress blog post (first image = featured image) |
posts | List posts, filterable by status and platform |
results <postId> | Per-platform success/failure for one post |
retry <postId> | Retry the failed destinations |
upload <url> | Import an image or MP4 video by URL → media_id (videos import async — poll until ready) |
caption -t <topic> | AI captions, tuned per platform |
analytics [--period] | Performance summary |
campaigns | List campaigns |
Add --json for machine-readable output. It turns on automatically when piped, so agents get JSON without asking.
platform-rules returns what each platform will actually accept, straight from the server:
$ posteverywhere platform-rules bluesky --json
{ "platform": "bluesky", "characterLimit": 300,
"features": ["threads", "quotes", "link_cards"], ... }
The limits differ by two orders of magnitude — Bluesky caps at 300 characters, Facebook at 63,206 — and TikTok rejects images outside its pixel ceiling server-side. Checking costs one call; guessing costs a failed publish. Because the values are server-authoritative, a newly supported platform shows up here with no update on your side.
| Resource | URL |
|---|---|
| 🌐 Homepage | posteverywhere.ai |
| 🛠️ Developers landing page | posteverywhere.ai/developers |
| 📖 API Documentation | posteverywhere.ai/docs |
| 📦 This CLI on npm | npmjs.com/package/@posteverywhere/cli |
| 🤖 MCP server (npm) | npmjs.com/package/@posteverywhere/mcp |
| 🤖 MCP server (GitHub) | github.com/posteverywhere/mcp |
| 📚 Node.js SDK | github.com/posteverywhere/sdk |
| 🔌 Connect Claude | posteverywhere.ai/integrations/claude |
| You want | Use |
|---|---|
| An agent that can run shell commands (Claude Code, Codex, Cursor) | This CLI + npx skills add posteverywhere/cli |
| An agent that speaks MCP (Claude Desktop, ChatGPT, hosted agents) | @posteverywhere/mcp |
| To write your own application code | @posteverywhere/sdk |
All three hit the same v1 API, so an account connected once works everywhere.
Zero runtime dependencies. Pure Node (≥18), one source file. npx is instant and there's no supply-chain surface to audit.
Credentials stay local. login writes a scoped key to ~/.posteverywhere/config.json at mode 600. POSTEVERYWHERE_API_KEY takes precedence when set, so CI never touches the file.
Errors are readable by machines. On failure the CLI prints {"error": "..."} to stderr and exits non-zero, so an agent can tell "account needs reconnect" from "out of quota" and act on it.
MIT — see LICENSE.
FAQs
Post and schedule to Instagram, TikTok, YouTube, LinkedIn, Facebook, X, Threads, Pinterest, Bluesky, Telegram & Discord from your terminal. Log in once, connect accounts, publish. Also works as a tool for Claude, Cursor and other AI agents (--json output)
The npm package @posteverywhere/cli receives a total of 345 weekly downloads. As such, @posteverywhere/cli popularity was classified as not popular.
We found that @posteverywhere/cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.