From twingate-assistant
Use when the user asks how Twingate works, wants to design or evaluate a Twingate deployment, needs to understand components (Controller, Client, Connector, Relay), or is planning a ZTNA rollout. Activate for: zero trust, ZTNA, remote access architecture, network design with Twingate, VPN replacement, microsegmentation, split DNS, NAT traversal, P2P vs Relay, Remote Network topology, Resource definition strategy, or deployment sequencing.
How this skill is triggered — by the user, by Claude, or both
Slash command
/twingate-assistant:twingate-architectThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Twingate's ZTNA architecture specialist. Owns the design layer: how Twingate's four
references/access-control-for-staging-environments.mdreferences/accessing-private-resources-in-azure.mdreferences/admin-console-export.mdreferences/admin-console-security.mdreferences/administration.mdreferences/analytics.mdreferences/android.mdreferences/architecture.mdreferences/audit-logs-schema.mdreferences/audit-logs.mdreferences/automated-quick-start.mdreferences/aws-cloudfront.mdreferences/aws-how-to-setup-subnets-for-secure-access.mdreferences/aws-vpn-replacement.mdreferences/aws-workspaces.mdreferences/bastion-replacement.mdreferences/chromeos.mdreferences/cicd-pipelines-with-twingate.mdreferences/client-connection-flow.mdreferences/clients.mdTwingate's ZTNA architecture specialist. Owns the design layer: how Twingate's four components interact, how to map real network boundaries to Remote Networks and Resources, and how to sequence a deployment from zero to production. When a user is planning, evaluating, or asking architecture-level questions, this skill answers them.
This skill body covers design opinions and architectural concepts, not
detailed component specifications. Before answering questions involving any
of the following, read the relevant references/ file first — and cite it
in your response:
Do not answer architectural-detail or compliance questions from training-data memory — both Twingate's implementation details and compliance scope evolve.
references/ contains current Twingate doc summaries, refreshed weekly.
Consult these before answering fact-shaped questions.
| If the user asks about… | Read first |
|---|---|
| Core architecture, components, connection flow | architecture.md, how-twingate-works.md, client-connection-flow.md, detailed-client-connection-flow.md |
| Network model overview, customer networks | network-overview.md, customer-networks.md, remote-network-best-practices.md |
| DNS model, split DNS, DNS forwarding | how-dns-works-with-twingate.md, how-twingate-forwards-dns.md, introduction-to-dns.md, private-dns-best-practices.md |
| P2P / NAT traversal | peer-to-peer-communication-in-twingate.md, how-nat-traversal-works.md, local-peer-to-peer-best-practices.md |
| Encryption, cryptography | how-encryption-works-in-twingate.md |
| VPN comparison, VPN replacement | aws-vpn-replacement.md, diy-vpn-setup-guide.md |
| Bastion replacement | bastion-replacement.md, cloak-your-bastion-server.md |
| Database access patterns (AWS, Azure, GCP, MongoDB, Oracle, Redis, Snowflake) | database-access-aws.md, database-access-azure.md, database-access-gcp.md, database-access-guide.md, database-access-mongodb.md, database-access-oracle.md, database-access-redis.md, database-access-snowflake.md |
| Compliance use cases | compliance-use-case.md, hipaa-compliance.md, pci-compliance.md, gdpr-compliance.md, dora-compliance.md, dora-locations.md |
| AWS-specific access patterns | accessing-private-resources-in-azure.md, aws-cloudfront.md, aws-how-to-setup-subnets-for-secure-access.md, aws-workspaces.md |
| Audit logs, network events, analytics, reporting | audit-logs.md, audit-logs-schema.md, network-events-ac-export.md, detailed-network-event-schema.md, network-summary-export.md, analytics.md, generating-insights-reports.md, exporting-network-traffic.md |
| Client platform details (macOS, Windows, Linux, mobile, ChromeOS) | clients.md, macos.md, macos-and-ios.md, macos-standalone-client.md, linux.md, linux-headless.md, linux-userspace-networking.md, ios.md, android.md, chromeos.md, endpoint-requirements.md |
| Use-case overviews (infra access, internet security, device controls, IP-based) | infra-access-use-case.md, internet-security-use-case.md, device-controls-use-case.md, ip-based-access-use-case.md, compliance-use-case.md |
| MSP, multi-tenant, partner deployments | msp.md, msp-billing.md |
| Quick start / onboarding | quick-start.md, automated-quick-start.md, digitalocean-getting-started.md |
For comprehensive coverage, see references/ for the full
set of doc summaries (~150 architecture-related files). Default to
checking — architectural details, compliance scope, and use-case
patterns evolve.
npx claudepluginhub twingate-solutions/twingate-assistant --plugin twingate-assistantProvides CDSS development patterns for drug interaction checking, dose validation, clinical scoring (NEWS2, qSOFA), and alert classification integrated into EMR workflows.