Zscaler Zero Trust Exchange MCP Server
by zscalerio.github.zscaler/zscaler-mcp-serverv0.15.4
Manage Zscaler Zero Trust Exchange via 400+ tools — ZPA, ZIA, ZDX, ZCC, ZTW, ZMS, EASM, and more.
context tax
queued
security
queued
cold start
queued
freshness
Maintained51d ago
Install Zscaler Zero Trust Exchange MCP server
Install in Claude Code
claude mcp add zscaler -e ZSCALER_CLIENT_ID='<zscaler-client-id>' -e ZSCALER_CLIENT_SECRET='<zscaler-client-secret>' -e ZSCALER_CUSTOMER_ID='<zscaler-customer-id>' -e ZSCALER_VANITY_DOMAIN='<zscaler-vanity-domain>' -- uvx zscaler-mcpInstall in Cursor
{
"mcpServers": {
"zscaler": {
"command": "uvx",
"args": [
"zscaler-mcp"
],
"env": {
"ZSCALER_CLIENT_ID": "<zscaler-client-id>",
"ZSCALER_CLIENT_SECRET": "<zscaler-client-secret>",
"ZSCALER_CUSTOMER_ID": "<zscaler-customer-id>",
"ZSCALER_VANITY_DOMAIN": "<zscaler-vanity-domain>"
}
}
}
}Add to ~/.cursor/mcp.json (global) or .cursor/mcp.json (project).
Install in Claude Desktop
{
"mcpServers": {
"zscaler": {
"command": "uvx",
"args": [
"zscaler-mcp"
],
"env": {
"ZSCALER_CLIENT_ID": "<zscaler-client-id>",
"ZSCALER_CLIENT_SECRET": "<zscaler-client-secret>",
"ZSCALER_CUSTOMER_ID": "<zscaler-customer-id>",
"ZSCALER_VANITY_DOMAIN": "<zscaler-vanity-domain>"
}
}
}
}Settings → Developer → Edit Config (claude_desktop_config.json), then restart.
Install in VS Code
{
"servers": {
"zscaler": {
"type": "stdio",
"command": "uvx",
"args": [
"zscaler-mcp"
],
"env": {
"ZSCALER_CLIENT_ID": "<zscaler-client-id>",
"ZSCALER_CLIENT_SECRET": "<zscaler-client-secret>",
"ZSCALER_CUSTOMER_ID": "<zscaler-customer-id>",
"ZSCALER_VANITY_DOMAIN": "<zscaler-vanity-domain>"
}
}
}
}Add to .vscode/mcp.json in your workspace.
Install in Windsurf
{
"mcpServers": {
"zscaler": {
"command": "uvx",
"args": [
"zscaler-mcp"
],
"env": {
"ZSCALER_CLIENT_ID": "<zscaler-client-id>",
"ZSCALER_CLIENT_SECRET": "<zscaler-client-secret>",
"ZSCALER_CUSTOMER_ID": "<zscaler-customer-id>",
"ZSCALER_VANITY_DOMAIN": "<zscaler-vanity-domain>"
}
}
}
}Add to ~/.codeium/windsurf/mcp_config.json.
Configuration
| Variable | Required | Secret | Description |
|---|---|---|---|
| ZSCALER_CLIENT_ID | yes | yes | Zscaler OneAPI Client ID from ZIdentity console. |
| ZSCALER_CLIENT_SECRET | yes | yes | Zscaler OneAPI Client Secret from ZIdentity console. |
| ZSCALER_CUSTOMER_ID | yes | — | Zscaler Customer ID from ZIdentity console. |
| ZSCALER_VANITY_DOMAIN | yes | — | Zscaler vanity domain (e.g. mycompany.zscloud.net). |
Freshness
Maintained — last maintenance signal 51d ago. The newest of the signals below sets the band.
Last commit (default branch)
2026-08-19 · 51d ago · GitHub
Latest release
2026-08-19 · 51d ago · GitHub · v0.15.4
Package published
no data · npm/PyPI
Registry entry updated
2026-08-19 · 51d ago · official registry · v0.15.4
FAQ
›How do I install the Zscaler Zero Trust Exchange MCP server in Claude Code?
Run: claude mcp add zscaler -e ZSCALER_CLIENT_ID='<zscaler-client-id>' -e ZSCALER_CLIENT_SECRET='<zscaler-client-secret>' -e ZSCALER_CUSTOMER_ID='<zscaler-customer-id>' -e ZSCALER_VANITY_DOMAIN='<zscaler-vanity-domain>' -- uvx zscaler-mcp. For Cursor, VS Code, Claude Desktop and Windsurf, use the install tabs above.
›Does Zscaler Zero Trust Exchange require an API key?
Yes. It expects ZSCALER_CLIENT_ID, ZSCALER_CLIENT_SECRET, ZSCALER_CUSTOMER_ID, ZSCALER_VANITY_DOMAIN, of which 2 are secrets.
›Can I use Zscaler Zero Trust Exchange as a remote (hosted) MCP server?
No hosted endpoint is published; it runs locally over stdio.
›Is Zscaler Zero Trust Exchange in the official MCP registry?
Yes, as io.github.zscaler/zscaler-mcp-server.