zscaler Claude Code Plugin
Claude Code PluginClaude CodeSecuritySecurity, Auth & ComplianceMonitoring & ObservabilityCloud, Deployment & CI/CDThe explanation below is AI-generated. Please verify it against the sources.
This plugin is an MCP server that lets AI agents interact with Zscaler's Zero Trust Exchange platform, covering ZIA, ZPA, ZDX, ZCC, EASM, and Z-Insights services according to the README. It runs in read-only mode by default, exposing only list and retrieve operations, and requires an explicit flag plus a mandatory allowlist before any create, update, or delete action can run. Authentication to Zscaler is handled through OneAPI credentials, and the server exposes roughly four hundred tools spread across the different Zscaler product areas. It can run over several transports and be deployed via Docker, Azure, Google Cloud, or Kubernetes, and it integrates with agents such as Claude Desktop, Cursor, and VS Code.
About the service
Zscaler is a cloud-delivered security platform that provides zero trust network access, internet security, digital experience monitoring, client connector device management, attack surface management, and traffic/incident analytics.
What you can do with zscaler
- List and inspect ZPA application segments, segment groups, and access policies
- Review ZIA firewall rules, URL filtering settings, and rule labels
- Check ZDX digital experience monitoring data for connectivity troubleshooting
- Read ZCC client connector device information
- Investigate EASM attack surface findings and Z-Insights analytics data
- Turn on write mode with an explicit allowlist to create, update, or delete Zscaler resources