
Zia Create Cloud App Control Rule
by zscaler809f68d6c921No licenseListed Oct 8, 2026Updated Oct 8, 2026
Create ZIA Cloud App Control rules that enforce granular, action-level decisions on cloud applications (Dropbox, OneDrive, Google Drive, ChatGPT, GitHub, YouTube, Slack, etc.). Cloud App Control is action-level, not block/allow at the connection layer — actions are things like ALLOW_FILE_SHARE_UPLOAD, BLOCK_WEBMAIL_ATTACH, ISOLATE_AI_ML_WEB_USE, DENY_AI_ML_CHAT, BLOCK_SOCIAL_NETWORKING_POST. Each rule belongs to a category (rule_type) such as FILE_SHARE, WEBMAIL, AI_ML, SYSTEM_AND_DEVELOPMENT, SOCIAL_NETWORKING, STREAMING_MEDIA, etc. Action vocabulary is surfaced at the category level, but the API validates per (rule_type, application, action) tuple — combining multiple apps in a single rule frequently fails with INVALID_INPUT_ARGUMENT, so this skill creates one rule per cloud application when the admin names multiple apps. Use when an admin asks to 'allow Dropbox uploads', 'block ChatGPT', 'restrict GitHub edits', 'isolate AI tools', 'block YouTube uploads', 'allow only viewing on OneDrive', 'block file uplo
Only the file list is public. File contents are available once the skill is installed in a workspace.
| Path | Size | Type |
|---|---|---|
| SKILL.md | 35.5 KB | text/markdown |
Source and attribution
Source:zscaler/zscaler-mcp-serverinskills/zia/create-cloud-app-control-ruleat commit809f68d
License: No license
Content belongs to its original authors. SourceWeft indexes it from a public repository.
More from zscaler/zscaler-mcp-server

Zpa Troubleshoot App Connector
zscaler
Guides troubleshooting of ZPA App Connector issues such as enrollment, upgrade, connectivity and resource problems.

Zpa Create Timeout Policy Rule
zscaler
Creates ZPA timeout policy rules that set session re-authentication and idle timeout values for applications and user groups.

Zpa Create Session Duration Rule
zscaler
Creates a ZPA Timeout Policy rule that forces session re-authentication after a set duration, optionally with an idle timeout.

Zpa Create Server Group
zscaler
Guides an administrator through creating a ZPA server group, including its required app connector group dependency.

Zpa Create Forwarding Policy Rule
zscaler
Creates ZPA client forwarding policy rules that control how Zscaler Client Connector traffic is routed.

Zpa Create Conditional Access Rule
zscaler
Builds a ZPA conditional access policy rule combining identity, posture, platform, country and risk checks.
More in DevOps & Cloud

M5 Onboard
anthropics
Provisions M5Stack ESP32 boards by detecting them on USB, flashing UIFlow 2.0 firmware, and installing a MicroPython app bundle.

Runbook
anthropics
Creates or updates step-by-step operational runbooks for recurring tasks, including troubleshooting, rollback and escalation.

Incident Response
anthropics
Guides an incident response workflow: severity triage, status updates, mitigation tracking, and blameless postmortems.

Deploy Checklist
anthropics
Generates a pre-deployment readiness checklist covering pre-deploy, deploy, post-deploy and rollback triggers.

Spanner Basics
Guides Google Cloud Spanner administration, schema design, querying and performance diagnosis.

Secops Cases
Manages Google Security Operations SOAR cases across their lifecycle via MCP tools.