zscalerzscalerOfficialΒ·25 Agent Skills Included

zscaler-mcp-server

Manage and audit Zscaler Zero Trust security policies

Manages Zscaler Zero Trust Exchange services (ZPA, ZIA, ZDX, ZCC, ZMS, EASM, Z-Insights) through natural language requests. Creates firewall, URL filtering, SSL inspection, and access policy rules, onboards applications and locations, and audits security posture without manual portal clicking. Troubleshoots user connectivity, investigates incidents, and generates compliance-ready reports across the entire Zscaler stack.
npx skills add zscaler/zscaler-mcp-server --all -g -y
Available:

Instructs the agent on the server's architecture, tool naming conventions, service filtering, and how to route requests to the correct Zscaler service tools while handling disabled services gracefully.

All Skills in This Repository (25)

Pure Emerald Level Indicators
πŸ“¦ In Repo
zscalerzscaler

zia-check-user-url-access

Evaluate ZIA policies in priority order to determine user or group URL access.

Official
Intermediate
πŸ“¦ In Repo
zscalerzscaler

zia-onboard-location

Coordinate static IP, VPN credentials, and location records to onboard a ZIA location.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zia-audit-ssl-inspection-bypass

Audit ZIA SSL inspection rules to identify decryption and bypass risks.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zia-investigate-sandbox

Diagnose ZIA Sandbox file analyses and policy enforcement events via API endpoints.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zia-investigate-url-category

Identify URL category references across ZIA filtering, SSL, DLP, and firewall rules.

Official
Intermediate
πŸ“¦ In Repo
zscalerzscaler

easm-review-attack-surface

Query EASM findings and lookalike domains to generate prioritized risk reports.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zins-audit-shadow-it

Identify and quantify shadow IT and unsanctioned SaaS usage via Zscaler Analytics.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zins-investigate-security-incident

Correlate Zscaler Z-Insights security data sources into a structured incident timeline.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zins-analyze-web-traffic

Query Zscaler Analytics to summarize web traffic by location, protocol, and threats.

Official
Intermediate
πŸ“¦ In Repo
zscalerzscaler

zins-assess-network-security

Analyze Zscaler Analytics firewall data to assess policy effectiveness and detect blocking gaps.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zms-troubleshoot-agent-deployment

Troubleshoot ZMS agent deployment and connectivity issues via MCP GraphQL operations.

Official
Advanced
πŸ“¦ In Repo
zscalerzscaler

zms-audit-microsegmentation-posture

Audit ZMS deployment posture across agent health, coverage, groups, policies, app zones, and tags.

Official
Advanced

Frequently Asked Questions

FAQPage Schema
How to install zscaler-mcp-server?β–Ό

Run `npx skills add zscaler/zscaler-mcp-server --all -g -y` in your terminal to install all skills globally. You will also need Zscaler OneAPI credentials set as environment variables.

What can I do with the Zscaler MCP server?β–Ό

You can create security policy rules, onboard applications and locations, audit SSL inspection and microsegmentation posture, troubleshoot user connectivity, and analyze web traffic across ZPA, ZIA, ZDX, and other Zscaler services.

Is the Zscaler MCP server read-only?β–Ό

Yes, by default only list and get operations are available. Write operations that create, update, or delete resources require explicit opt-in with an allowlist flag.

Does it work with Claude Desktop and Cursor?β–Ό

Yes. It follows the MCP standard and works with Claude Desktop, Cursor, VS Code, Gemini CLI, and other MCP-compatible clients.

Can I troubleshoot why a user cannot access an application?β–Ό

Yes. The cross-product troubleshooting skill correlates ZCC client status, ZDX experience metrics, ZPA access policies, and ZIA filtering rules to pinpoint the root cause.

Related Repositories in Software Engineering

View All in Software Engineering→