zins-audit-shadow-it

Identify and quantify shadow IT and unsanctioned SaaS usage via Zscaler Analytics.

44|24|Updated May 29, 2025
One-click install
npx skills add https://github.com/zscaler/zscaler-mcp-server --skill zins-audit-shadow-it
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: zins-audit-shadow-it
Source: https://github.com/zscaler/zscaler-mcp-server/tree/main/skills/zins/audit-shadow-it
Command: npx skills add https://github.com/zscaler/zscaler-mcp-server --skill zins-audit-shadow-it

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Audit shadow IT and unsanctioned SaaS usage across the organization, enabling risk discovery, CASB insights, and IoT device visibility.

Core Features & Use Cases

  • Discover unsanctioned SaaS apps using Zscaler Analytics (Z-Insights)
  • Assess risk scores and monitor CASB-protected cloud services
  • Inventory IoT devices and monitor data transfers for shadow IT visibility and risk

Quick Start

Run a shadow IT summary for a 14-day period to discover unsanctioned apps and IoT devices.

Frequently Asked Questions about zins-audit-shadow-it

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I discover unsanctioned SaaS apps and shadow IT in my organization?

Discover unsanctioned SaaS apps and shadow IT by analyzing network traffic with Zscaler Analytics to identify unauthorized cloud services and produce risk scores. The skill automates this discovery process by scanning usage data across 1, 7, 15, or 30 day windows.

Can I generate IoT device inventory and monitor data transfers for shadow IT visibility?

Yes, you can generate an IoT device inventory and monitor data transfers for shadow IT visibility using Zscaler Analytics. The skill tracks IoT device activity and data transfers to expose unauthorized devices and unsanctioned cloud usage on your network.

How do I assess risk scores and monitor CASB-protected cloud services?

Assess risk scores and monitor CASB-protected cloud services by running a shadow IT summary over a selected time window. The skill leverages Zscaler Analytics to quantify the risk of unsanctioned applications and review CASB insights for cloud service security.

Does this shadow IT audit skill support custom time ranges for security reporting?

Yes, this shadow IT audit skill supports custom time ranges for security reporting by allowing you to select 1, 7, 15, or 30 day windows. It uses these intervals to scope Zscaler Analytics data for discovery, risk assessment, and IoT device reporting.

What is the best way to run a shadow IT summary for a 14-day period?

The best way to run a shadow IT summary for a 14-day period is to apply the skill to a 15-day time window using Zscaler Analytics. This configuration discovers unsanctioned SaaS apps, calculates risk scores, and inventories IoT devices across that interval.

Why do I need Zscaler Analytics to audit shadow IT and unsanctioned SaaS usage?

You need Zscaler Analytics to audit shadow IT and unsanctioned SaaS usage because it provides the underlying network traffic data required to discover unauthorized applications. The skill uses these analytics to calculate risk scores and generate IoT device inventories.