box-automation
Automates file and folder management operations in Box via Rube MCP.
Install
mkdir -p .claude/skills/box-automation-sakhi-shraddha-sst && curl -L -o skill.zip "https://agentskills.codes/api/skills/download/17691" && unzip -o skill.zip -d .claude/skills/box-automation-sakhi-shraddha-sst && rm skill.zipInstalls to .claude/skills/box-automation-sakhi-shraddha-sst
Activation
This is the description your AI agent reads to decide when to run this skill — the better it matches your request, the more reliably it fires.
Automate Box cloud storage operations including file upload/download, search, folder management, sharing, collaborations, and metadata queries via Rube MCP (Composio). Always search tools first for current schemas.Key capabilities
- →Upload files to Box
- →Download files from Box
- →Search for Box content by name, content, or metadata
- →Manage Box folders (create, update, move, copy, delete)
- →Manage Box collaborations
- →Query files and folders by metadata
How it works
It uses Composio's Box toolkit via Rube MCP to perform various Box cloud storage operations.
Inputs & outputs
When to use box-automation
- →Uploading files to Box folders
- →Downloading files from Box
- →Managing folder structure programmatically
- →Searching for Box content
About this skill
Box Automation via Rube MCP
Automate Box operations including file upload/download, content search, folder management, collaboration, metadata queries, and sign requests through Composio's Box toolkit.
Prerequisites
- Rube MCP must be connected (RUBE_SEARCH_TOOLS available)
- Active Box connection via
RUBE_MANAGE_CONNECTIONSwith toolkitbox - Always call
RUBE_SEARCH_TOOLSfirst to get current tool schemas
Setup
Get Rube MCP: Add https://rube.app/mcp as an MCP server in your client configuration. No API keys needed — just add the endpoint and it works.
- Verify Rube MCP is available by confirming
RUBE_SEARCH_TOOLSresponds - Call
RUBE_MANAGE_CONNECTIONSwith toolkitbox - If connection is not ACTIVE, follow the returned auth link to complete Box OAuth
- Confirm connection status shows ACTIVE before running any workflows
Core Workflows
1. Upload and Download Files
When to use: User wants to upload files to Box or download files from it
Tool sequence:
BOX_SEARCH_FOR_CONTENT- Find the target folder if path is unknown [Prerequisite]BOX_GET_FOLDER_INFORMATION- Verify folder exists and get folder_id [Prerequisite]BOX_LIST_ITEMS_IN_FOLDER- Browse folder contents and discover file IDs [Optional]BOX_UPLOAD_FILE- Upload a file to a specific folder [Required for upload]BOX_DOWNLOAD_FILE- Download a file by file_id [Required for download]BOX_CREATE_ZIP_DOWNLOAD- Bundle multiple files/folders into a zip [Optional]
Key parameters:
parent_id: Folder ID for upload destination (use"0"for root folder)file: FileUploadable object withs3key,mimetype, andnamefor uploadsfile_id: Unique file identifier for downloadsversion: Optional file version ID for downloading specific versionsfields: Comma-separated list of attributes to return
Pitfalls:
- Uploading to a folder with existing filenames can trigger conflict behavior; decide overwrite vs rename semantics
- Files over 50MB should use chunk upload APIs (not available via standard tools)
- The
attributespart of upload must come before thefilepart or you get HTTP 400 withmetadata_after_file_contents - File IDs and folder IDs are numeric strings extractable from Box web app URLs (e.g.,
https://*.app.box.com/files/123gives file_id"123")
2. Search and Browse Content
When to use: User wants to find files, folders, or web links by name, content, or metadata
Tool sequence:
BOX_SEARCH_FOR_CONTENT- Full-text search across files, folders, and web links [Required]BOX_LIST_ITEMS_IN_FOLDER- Browse contents of a specific folder [Optional]BOX_GET_FILE_INFORMATION- Get detailed metadata for a specific file [Optional]BOX_GET_FOLDER_INFORMATION- Get detailed metadata for a specific folder [Optional]BOX_QUERY_FILES_FOLDERS_BY_METADATA- Search by metadata template values [Optional]BOX_LIST_RECENTLY_ACCESSED_ITEMS- List recently accessed items [Optional]
Key parameters:
query: Search string supporting operators (""exact match,AND,OR,NOT- uppercase only)type: Filter by"file","folder", or"web_link"ancestor_folder_ids: Limit search to specific folders (comma-separated IDs)file_extensions: Filter by file type (comma-separated, no dots)content_types: Search in"name","description","file_content","comments","tags"created_at_range/updated_at_range: Date filters as comma-separated RFC3339 timestampslimit: Results per page (default 30)offset: Pagination offset (max 10000)folder_id: ForLIST_ITEMS_IN_FOLDER(use"0"for root)
Pitfalls:
- Queries with offset > 10000 are rejected with HTTP 400
BOX_SEARCH_FOR_CONTENTrequires eitherqueryormdfiltersparameter- Misconfigured filters can silently omit expected items; validate with small test queries first
- Boolean operators (
AND,OR,NOT) must be uppercase BOX_LIST_ITEMS_IN_FOLDERrequires pagination viamarkeroroffset/usemarker; partial listings are common- Standard folders sort items by type first (folders before files before web links)
3. Manage Folders
When to use: User wants to create, update, move, copy, or delete folders
Tool sequence:
BOX_GET_FOLDER_INFORMATION- Verify folder exists and check permissions [Prerequisite]BOX_CREATE_FOLDER- Create a new folder [Required for create]BOX_UPDATE_FOLDER- Rename, move, or update folder settings [Required for update]BOX_COPY_FOLDER- Copy a folder to a new location [Optional]BOX_DELETE_FOLDER- Move folder to trash [Required for delete]BOX_PERMANENTLY_REMOVE_FOLDER- Permanently delete a trashed folder [Optional]
Key parameters:
name: Folder name (no/,\, trailing spaces, or./..)parent__id: Parent folder ID (use"0"for root)folder_id: Target folder ID for operationsparent.id: Destination folder ID for moves viaBOX_UPDATE_FOLDERrecursive: Settrueto delete non-empty foldersshared_link: Object withaccess,password,permissionsfor creating shared links on foldersdescription,tags: Optional metadata fields
Pitfalls:
BOX_DELETE_FOLDERmoves to trash by default; useBOX_PERMANENTLY_REMOVE_FOLDERfor permanent deletion- Non-empty folders require
recursive: truefor deletion - Root folder (ID
"0") cannot be copied or deleted - Folder names cannot contain
/,\, non-printable ASCII, or trailing spaces - Moving folders requires setting
parent.idviaBOX_UPDATE_FOLDER
4. Share Files and Manage Collaborations
When to use: User wants to share files, manage access, or handle collaborations
Tool sequence:
BOX_GET_FILE_INFORMATION- Get file details and current sharing status [Prerequisite]BOX_LIST_FILE_COLLABORATIONS- List who has access to a file [Required]BOX_UPDATE_COLLABORATION- Change access level or accept/reject invitations [Required]BOX_GET_COLLABORATION- Get details of a specific collaboration [Optional]BOX_UPDATE_FILE- Create shared links, lock files, or update permissions [Optional]BOX_UPDATE_FOLDER- Create shared links on folders [Optional]
Key parameters:
collaboration_id: Unique collaboration identifierrole: Access level ("editor","viewer","co-owner","owner","previewer","uploader","viewer uploader","previewer uploader")status:"accepted","pending", or"rejected"for collaboration invitesfile_id: File to share or managelock__access: Set to"lock"to lock a filepermissions__can__download:"company"or"open"for download permissions
Pitfalls:
- Only certain roles can invite collaborators; insufficient permissions cause authorization errors
can_view_pathincreases load time for the invitee's "All Files" page; limit to 1000 per user- Collaboration expiration requires enterprise admin settings to be enabled
- Nested parameter names use double underscores (e.g.,
lock__access,parent__id)
5. Box Sign Requests
When to use: User wants to manage document signature requests
Tool sequence:
BOX_LIST_BOX_SIGN_REQUESTS- List all signature requests [Required]BOX_GET_BOX_SIGN_REQUEST_BY_ID- Get details of a specific sign request [Optional]BOX_CANCEL_BOX_SIGN_REQUEST- Cancel a pending sign request [Optional]
Key parameters:
sign_request_id: UUID of the sign requestshared_requests: Settrueto include requests where user is a collaborator (not owner)senders: Filter by sender emails (requiresshared_requests: true)limit/marker: Pagination parameters
Pitfalls:
- Requires Box Sign to be enabled for the enterprise account
- Deleted sign files or parent folders cause requests to not appear in listings
- Only the creator can cancel a sign request
- Sign request statuses include:
converting,created,sent,viewed,signed,declined,cancelled,expired,error_converting,error_sending
Common Patterns
ID Resolution
Box uses numeric string IDs for all entities:
- Root folder: Always ID
"0" - File ID from URL:
https://*.app.box.com/files/123gives file_id"123" - Folder ID from URL:
https://*.app.box.com/folder/123gives folder_id"123" - Search to ID: Use
BOX_SEARCH_FOR_CONTENTto find items, then extract IDs from results - ETag: Use
if_matchwith file's ETag for safe concurrent delete operations
Pagination
Box supports two pagination methods:
- Offset-based: Use
offset+limit(max offset 10000) - Marker-based: Set
usemarker: trueand followmarkerfrom responses (preferred for large datasets) - Always paginate to completion to avoid partial results
Nested Parameters
Box tools use double underscore notation for nested objects:
parent__idfor parent folder referencelock__access,lock__expires__at,lock__is__download__preventedfor file lockspermissions__can__downloadfor download permissions
Known Pitfalls
ID Formats
- All IDs are numeric strings (e.g.,
"123456", not integers) - Root folder is always
"0" - File and folder IDs can be extracted from Box web app URLs
Rate Limits
- Box API has per-endpoint rate limits
- Search and list operations should use pagination responsibly
- Bulk operations should include delays between requests
Parameter Quirks
fieldsparameter changes response shape: when specified, only mini representation + requested fields are returned- Search requires either
queryormdfilters; both are optional individually but one must be present BOX_UPDATE_FILEwithlockset tonullremoves the lock (raw API only)- Metadata query
fromfield format:enterprise_{enterprise_id}.templateKeyorglobal.templateKey
Permissions
- Deletions fail without sufficient permissions; always handle error responses
Content truncated.
When not to use it
- →For files over 50MB that require chunk upload APIs
Prerequisites
Limitations
- →Files over 50MB should use chunk upload APIs (not available via standard tools)
- →Queries with offset > 10000 are rejected with HTTP 400
- →Root folder (ID "0") cannot be copied or deleted
How it compares
This skill automates Box operations through a specific MCP toolkit, providing programmatic control over cloud storage tasks rather than manual interaction.
Compared to similar skills
box-automation side by side with the closest alternatives in the catalog.
| Skill | Installs | Updated | Safety | Difficulty |
|---|---|---|---|---|
| box-automation (this skill) | 0 | 5mo | No flags | Intermediate |
| zendesk | 15 | 3mo | Review | Intermediate |
| zapier-workflows | 11 | 8mo | Review | Beginner |
| controlling-spotify | 7 | 3mo | Review | Intermediate |
Try saying
Example prompts that trigger this skill in your AI assistant.
You might also like
zendesk
vm0-ai
Zendesk Support REST API for managing tickets, users, organizations, and support operations. Use this skill to create tickets, manage users, search, and automate customer support workflows.
zapier-workflows
davila7
Manage and trigger pre-built Zapier workflows and MCP tool orchestration. Use when user mentions workflows, Zaps, automations, daily digest, research, search, lead tracking, expenses, or asks to "run" any process. Also handles Perplexity-based research and Google Sheets data tracking.
controlling-spotify
oaustegard
Control Spotify playback and manage playlists via MCP server. Use when user requests playing music, controlling Spotify, creating playlists, searching songs, or managing their Spotify library.
smithery-ai-cli
smithery-ai
Find, connect, and use MCP tools and skills via the Smithery CLI. Use when the user searches for new tools or skills, wants to discover integrations, connect to an MCP, install a skill, or wants to interact with an external service (email, Slack, Discord, GitHub, Jira, Notion, databases, cloud APIs, monitoring, etc.).
connect-apps
ComposioHQ
Connect Claude to external apps like Gmail, Slack, GitHub. Use this skill when the user wants to send emails, create issues, post messages, or take actions in external services.
freshdesk-automation
sickn33
Automate Freshdesk helpdesk operations including tickets, contacts, companies, notes, and replies via Rube MCP (Composio). Always search tools first for current schemas.