Zscaler Zwa
Use when working with Zscaler Workflow Automation — DLP incident search, evidence retrieval, incident closure, labels, audit logs.
Zscaler Snapshot
Use when backing up Zscaler tenant config, comparing changes between points in time, detecting drift, or rolling back to a previous state.
Zscaler Troubleshoot
Use when diagnosing Zscaler connectivity issues, access problems, blocked websites, DNS failures, performance degradation, or ZTB gateway issues. Interactive diagnostic wizard.
Zscaler Terraformer
Use when importing existing ZIA or ZPA infrastructure into Terraform (brownfield). Zscaler Terraformer is a CLI tool that generates .tf configuration files and .tfstate from live Zscaler tenants.
Zscaler Zid
Use when working with ZIdentity — user management, group management, API clients, resource servers, directory sync.
Zscaler Zia
Use when working with ZIA — firewall rules, URL filtering, DLP policies, SSL inspection, cloud apps, locations, GRE tunnels, sandbox, ATP, bandwidth, DNS control, forwarding, NAT, PAC files, admin audit logs, traffic management, AppTotal, Cloud NSS, VZEN, shadow IT, IoT, traffic capture, policy export.
Zscaler Deploy
Use when deploying new applications, servers, locations, sites, DLP policies, or partner access in Zscaler. Pre-built deployment templates with interactive prompts.
Zscaler Zinsights
Use when querying Zscaler analytics — web traffic, firewall stats, cyber incidents, shadow IT, IoT devices, CASB reports, threat intelligence.
Zscaler Ztb
Use when working with ZTB (Zero Trust Branch) — AirGap API for sites, gateways, VLANs, PBR, VRRP, IPsec, GRE, WireGuard, IPAM, SNMP, device posture, remote isolation, BGP, OSPF, templates, integrations.
Zscaler Audit
Use when auditing Zscaler tenant security posture, checking for misconfigurations, or reviewing hygiene. Use after initial setup or periodically.
Zscaler Discover
Use when you need a full inventory of the Zscaler tenant, when starting work on a new tenant, or when memory/zscaler-tenant.md is missing or outdated.
Zscaler Zdx
Use when working with ZDX (Digital Experience) — application monitoring, device metrics, alerts, user experience scores, deep traces, software inventory.
Zscaler Zcc
Use when working with ZCC (Client Connector) — device management, forwarding profiles, trusted networks, enrollment, web policy, web privacy, failopen policy, custom/predefined IP apps, process-based apps, application profiles, web app service, admin roles, entitlements.
Zscaler Aiguard
Use when working with Zscaler AI Guard — content detection, policy execution for AI/ML content inspection, n8n integration, NeMo Guardrails, AI Gateway.
Zscaler Zbi
Use when working with Zscaler Business Insights (ZBI) — custom application definitions, report configurations, and report generation/retrieval.
Zscaler Onboard
Use when onboarding a new Zscaler tenant from scratch, when a colleague starts using the Zscaler skills for the first time, or when setting up a fresh project with Zscaler integration. Chains setup, discover, audit, and snapshot into a single flow.
Zscaler Easm
Use when working with ZEASM (External Attack Surface Management) — findings, lookalike domains, organization discovery.
Zscaler Zcbc
Use when working with ZCBC (Cloud & Branch Connector) via OneAPI — partner integrations, policy resources, admin roles, location management, connector groups. Also known as ZTC (Zero Trust Cloud) in newer tooling.
Zscaler Zms
Use when working with Zscaler Microsegmentation (ZMS) — read-only inventory of agents, agent groups, provisioning keys (nonces), resources, resource groups, policy rules, app zones, app catalog, and tags via the MCP server. Write operations require the admin portal or SDK.
Zscaler Setup
Use when setting up Zscaler MCP integration from scratch, when .mcp.json is missing, or when a colleague needs to configure their Zscaler API access. Interactive wizard that installs dependencies, collects credentials, and validates connectivity.
Zscaler
Use when managing ANY Zscaler component and you need to determine which product API to use, or when working across multiple products. Routes to the appropriate product skill.
Zscaler Migrate
Use when migrating from a competitor product to Zscaler — assessment, vendor-specific policy translation, phased cutover with API execution. Supports Palo Alto, Check Point, Netskope, Cisco, Symantec, Forcepoint.
Zscaler Zpa
Use when working with ZPA — application segments, access/forwarding/timeout/isolation policies, PRA, BA, connectors, service edges, segment groups, server groups, SCIM, LSS, isolation, certificates, microtenants, tags, microsegmentation.
Zscaler Bridge
Use when translating a Zscaler design document (from zstack or manual planning) into executable API calls. Takes architecture docs, policy matrices, or deployment plans and maps them to MCP tool sequences.