workspace/skills/cloudflare-zerotrust/SKILL.md
Inspect Cloudflare Zero Trust access applications, policies, tunnels, and CASB findings.
npx skillsauth add automateyournetwork/netclaw cloudflare-zerotrustInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Inspect Cloudflare Zero Trust access applications, policies, tunnels, and CASB findings.
| Tool | Description |
|------|-------------|
| list_access_applications | List Zero Trust Access applications |
| get_access_application | Get details for an access application |
| list_access_policies | List access policies for an application |
| get_access_policy | Get details for an access policy |
| list_tunnels | List Cloudflare Tunnels |
| get_tunnel | Get tunnel details and connection status |
| list_casb_findings | List CASB security findings |
| get_casb_finding | Get details for a CASB finding |
List all Cloudflare Access applications
Show access policies for the internal-dashboard app
What Cloudflare Tunnels are configured and their status?
List CASB security findings for SaaS misconfigurations
CLOUDFLARE_API_TOKEN with Access:Read, Account:Read scopesCLOUDFLARE_ACCOUNT_ID from dashboardThis skill uses:
cloudflare-casb remote MCP server at casb.mcp.cloudflare.comcloudflare-audit-logs for access audit trailstools
Zoom meeting intelligence — correlates a live or referenced Zoom meeting discussion against NetClaw's historical meeting record (via the official Zoom Meetings MCP) and today's actual network state. Use when someone in a Zoom meeting references a past discussion or incident ('didn't we have this issue before?'), or asks to search prior meetings for a topic. Does not itself recognize live in-meeting questions — that happens automatically inside zoom-rtms-mcp's own extractor (spec 118) before this skill is ever invoked.
tools
Manage Lantronix out-of-band (OOB) infrastructure via Percepxion central management platform: device inventory, serial port inspection via SLC CLI, firmware compliance, config management, security auditing, and closed-loop incident remediation. Use during outages, maintenance windows, compliance cycles, and AI-assisted automation workflows.
tools
Federate your NetClaw with other NetClaw operators over the BGP mesh — exchange capability inventories and ask your claw what a peer can do. (US1; remote invocation and chat land in later phases.)
tools
Track token consumption, enforce session budgets, and display cost for every NetClaw interaction.