Install
$ agentstack add skill-secsilab-zscaler-claude-skills-zscaler-aiguard ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
Zscaler AI Guard
Overview
AI Guard inspects content against AI/ML security policies. Use for detecting sensitive data in AI prompts/responses and enforcing content policies.
MCP Tools
No MCP tools. Direct API calls only.
For full API endpoint reference, see ENDPOINTS.md in this skill directory.
Authentication
Bearer token authentication. Base URL: https://{{ZAIGuardBase}}/detection
Common Patterns
- Inspect outbound AI prompt content:
POST /detection/resolve-and-execute-policywithdirection=OUT - Inspect inbound AI response content:
POST /detection/resolve-and-execute-policywithdirection=IN - Execute specific policy by ID:
POST /detection/execute-policywithpolicy_id
Known Limitations
- Only 2 endpoints — early-stage product
- No MCP tools
- Policy creation/management not available via API (admin portal only)
Integration Ecosystem
AI Guard extends beyond its core API through several integration points:
n8n Community Node (n8n-nodes-aiguard)
A community-built n8n node that enables AI Guard inspection within n8n workflow automation. Use this to insert AI Guard content detection into automated pipelines (e.g., inspect LLM outputs before they are written to external systems, or inspect user inputs before forwarding to an LLM).
- Package:
n8n-nodes-aiguard(npm) - Use case: No-code/low-code automation workflows that need AI content policy enforcement
- Supports: Both
direction=INanddirection=OUTinspection modes
NeMo Guardrails (aiguard-nemo-guardrails)
An integration package for NVIDIA NeMo Guardrails that uses AI Guard as a content safety rail. NeMo Guardrails is a framework for adding guardrails (topic restrictions, safety filters, fact-checking) to LLM applications.
- Package:
aiguard-nemo-guardrails(Python) - Use case: Enterprise LLM applications built on NeMo that need enterprise-grade content policy (DLP, compliance)
- Architecture: Runs as a NeMo rail action; calls AI Guard API for each LLM turn
AI Gateway
AI Gateway is a Zscaler platform feature that proxies and inspects traffic between users and AI/LLM services (e.g., ChatGPT, Copilot, Claude). AI Guard policy is the enforcement layer within AI Gateway.
- Relationship: AI Gateway routes traffic; AI Guard provides content inspection and policy execution
- Configuration: AI Guard policies are applied within the AI Gateway configuration in the Zscaler admin portal
- Coverage: Supports both browser-based AI access (via ZIA proxy) and API-level AI calls
Integration Architecture
User / App → [AI Gateway (routing + auth)] → [AI Guard (content inspection)]
↓
Policy: allow / block / redact / audit
When building integrations, prefer the AI Gateway + AI Guard combination for complete visibility. The n8n node and NeMo integration are for custom pipeline insertion where AI Gateway cannot intercept traffic natively.
MCP Server
Live detection API calls for AI Guard are available via the zscaler-mcp-server. No dedicated MCP tools exist for AI Guard yet — use direct Bearer token calls to the detection API. See the MCP server repository for any newly added AI Guard tools.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: secsilab
- Source: secsilab/zscaler-claude-skills
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.