# Zscaler Zero Trust Exchange (MCP server)

> Zscaler Zero Trust Exchange is an MCP server that adds developer tools to AI assistants such as Claude Desktop, Claude Code and Cursor. Manage Zscaler Zero Trust Exchange via 400+ tools — ZPA, ZIA, ZDX, ZCC, ZTW, ZMS, EASM, and more. It has 49 GitHub stars, is released under the MIT license and runs locally with uvx zscaler-mcp.

zscaler-mcp-server is a Model Context Protocol (MCP) server that connects AI agents with the Zscaler Zero Trust Exchange platform. By default, the server operates in read-only mode for security, requiring explicit opt-in to enable write operations.

## Key facts

| Fact | Value |
|---|---|
| Repository | https://github.com/zscaler/zscaler-mcp-server |
| GitHub stars | 49 |
| License | MIT |
| Language | Python |
| Transport | stdio |
| Packages | pypi: zscaler-mcp; docker: docker.io/zscaler/zscaler-mcp-server:latest |
| Remote URL | none |
| Needs API key | yes |
| Official | yes |
| Works with | Claude Desktop, Claude Code, Cursor, VS Code |
| Category | Developer tools |
| Latest release | v0.15.4 (Aug 19, 2026) |
| Last commit | Aug 19, 2026 |
| MCP registry name | io.github.zscaler/zscaler-mcp-server |

## Install

### Claude Desktop (claude_desktop_config.json)

```json
{
  "mcpServers": {
    "zscaler-zero-trust-exchange": {
      "command": "uvx",
      "args": [
        "zscaler-mcp"
      ],
      "env": {
        "ZSCALER_CLIENT_ID": "your-value",
        "ZSCALER_CLIENT_SECRET": "your-value",
        "ZSCALER_CUSTOMER_ID": "your-value",
        "ZSCALER_VANITY_DOMAIN": "your-value"
      }
    }
  }
}
```

Settings > Developer > Edit Config. macOS: ~/Library/Application Support/Claude/, Windows: %APPDATA%\Claude\. Restart Claude Desktop afterwards.

### Claude Code

```sh
claude mcp add --env ZSCALER_CLIENT_ID=your-value --env ZSCALER_CLIENT_SECRET=your-value --env ZSCALER_CUSTOMER_ID=your-value --env ZSCALER_VANITY_DOMAIN=your-value --transport stdio zscaler-zero-trust-exchange -- uvx zscaler-mcp
```

### Cursor (.cursor/mcp.json)

```json
{
  "mcpServers": {
    "zscaler-zero-trust-exchange": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "zscaler-mcp"
      ],
      "env": {
        "ZSCALER_CLIENT_ID": "your-value",
        "ZSCALER_CLIENT_SECRET": "your-value",
        "ZSCALER_CUSTOMER_ID": "your-value",
        "ZSCALER_VANITY_DOMAIN": "your-value"
      }
    }
  }
}
```

Project file; use ~/.cursor/mcp.json to enable it in every project.

### VS Code (.vscode/mcp.json)

```json
{
  "inputs": [
    {
      "type": "promptString",
      "id": "zscaler_client_id",
      "description": "ZSCALER_CLIENT_ID",
      "password": true
    },
    {
      "type": "promptString",
      "id": "zscaler_client_secret",
      "description": "ZSCALER_CLIENT_SECRET",
      "password": true
    }
  ],
  "servers": {
    "zscaler-zero-trust-exchange": {
      "type": "stdio",
      "command": "uvx",
      "args": [
        "zscaler-mcp"
      ],
      "env": {
        "ZSCALER_CLIENT_ID": "${input:zscaler_client_id}",
        "ZSCALER_CLIENT_SECRET": "${input:zscaler_client_secret}",
        "ZSCALER_CUSTOMER_ID": "your-value",
        "ZSCALER_VANITY_DOMAIN": "your-value"
      }
    }
  }
}
```

Config formats checked against the official docs on 2026-10-07.

## Environment variables

- `ZSCALER_CLIENT_ID` (secret) (required): Zscaler OneAPI Client ID from ZIdentity console.
- `ZSCALER_CLIENT_SECRET` (secret) (required): Zscaler OneAPI Client Secret from ZIdentity console.
- `ZSCALER_CUSTOMER_ID` (required): Zscaler Customer ID from ZIdentity console.
- `ZSCALER_VANITY_DOMAIN` (required): Zscaler vanity domain (e.g. mycompany.zscloud.net).

## Similar MCP servers

- [Gemini CLI](https://appsgit.com/mcp-servers/gemini-cli): An open-source AI agent that brings the power of Gemini directly into your terminal. (107,240 stars, Apache-2.0)
- [Front-End Checklist](https://appsgit.com/mcp-servers/front-end-checklist): Review frontend code and live pages against 386 quality-gated web development rules. (74,390 stars, MIT)
- [Claude Flow](https://appsgit.com/mcp-servers/claude-flow): AI orchestration with hive-mind swarms, neural networks, and 87 MCP tools for enterprise dev. (74,016 stars, MIT, needs API key)
- [Codebase Memory](https://appsgit.com/mcp-servers/codebase-memory): Codebase knowledge graph for AI agents — 162 languages, sub-ms queries, 99% fewer tokens. (45,917 stars, MIT)
- [Bytedance Filesystem](https://appsgit.com/mcp-servers/bytedance-filesystem): MCP server for filesystem access. (39,206 stars, Apache-2.0)
- [GitHub](https://appsgit.com/mcp-servers/github): Connect AI assistants to GitHub - manage repos, issues, PRs, and workflows through natural language. (33,414 stars, MIT, official, needs API key)

---

Canonical page: https://appsgit.com/mcp-servers/zscaler-zero-trust-exchange
Source: appsgit (https://appsgit.com), the app store for github. Data from the GitHub API, refreshed nightly.
Machine access: JSON API https://appsgit.com/api/v1/apps (OpenAPI: https://appsgit.com/openapi.json), MCP server https://mcp.appsgit.com/mcp, full index https://appsgit.com/llms-full.txt.
