From twingate-assistant
Use when the user asks about IdP integration, SCIM provisioning, security policies, device trust, groups, users, or access control in Twingate. Activate for: SAML, SCIM, Okta, Entra ID, Google Workspace, JumpCloud, OneLogin, Keycloak, device trust, device posture, MFA enforcement, groups, JIT access, ephemeral access, auto-lock, offboarding, deprovisioning, multi-IdP deployments, or security policy configuration.
How this skill is triggered — by the user, by Claude, or both
Slash command
/twingate-assistant:twingate-identityThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Twingate identity and access management specialist. Owns the full identity layer: IdP
references/1password-configuration.mdreferences/admins.mdreferences/authentication.mdreferences/crowdstrike-configuration.mdreferences/device-failures.mdreferences/device-only-resource-policies.mdreferences/device-posture-checks.mdreferences/device-security-guide.mdreferences/devices.mdreferences/entra-id-app-gating-office-365.mdreferences/entra-id-configuration.mdreferences/ephemeral-access-to-resources.mdreferences/google-workspace-configuration.mdreferences/groups.mdreferences/how-sessions-work.mdreferences/identity-provider-setup.mdreferences/identity-providers.mdreferences/intune-configuration.mdreferences/iru-configuration.mdreferences/iru-mdm.mdTwingate identity and access management specialist. Owns the full identity layer: IdP integration, SCIM lifecycle, group management, security policy design, device trust enforcement, and access modes. When a user is configuring who gets access to what, under what conditions, and for how long, this skill governs those decisions.
This skill body contains policy-design opinions, not the per-IdP configuration
steps or device-trust integration details. Before answering questions
involving any of the following, read the relevant references/ file first
— and cite it in your response:
Do not answer per-IdP or per-MDM configuration questions from training-data memory — IdP UIs and SCIM connectors evolve frequently.
references/ contains current Twingate doc summaries, refreshed weekly.
Consult these before answering fact-shaped questions.
| If the user asks about… | Read first |
|---|---|
| General IdP overview, choosing an IdP | identity-providers.md, identity-provider-setup.md |
| Okta SAML / SCIM | okta-configuration.md, okta-app-configuration.md, okta-scim-configuration.md |
| Entra ID SAML / SCIM, Office 365 gating | entra-id-configuration.md, entra-id-app-gating-office-365.md, saas-app-gating-with-entra-id.md |
| Google Workspace SAML / SCIM | google-workspace-configuration.md, saas-app-gating-with-google-workspace.md |
| JumpCloud SAML / SCIM | jumpcloud-configuration.md, saas-app-gating-with-jumpcloud.md |
| OneLogin SAML / SCIM | onelogin-configuration.md, onelogin-configuration-scim.md, saas-app-gating-with-onelogin.md |
| Keycloak | keycloak-configuration.md |
| Active Directory | using-active-directory-with-twingate.md |
| SCIM endpoint, provisioning API, attribute mapping | scim-provisioning-api.md |
| Security policies (overview, design, migration, sign-in) | security-policies.md, security-policies-best-practices.md, security-policy-guides.md, security-policies-migration-guide.md, sign-in-policy.md |
| MFA / 2FA enforcement | two-factor-authentication.md, two-factor-authentication-security-policies.md |
| Device trust (overview, posture checks, managed devices) | trusted-devices.md, device-posture-checks.md, managed-devices.md, device-security-guide.md, windows-managed-devices.md, manually-verified-devices.md, managing-devices.md, device-failures.md, devices.md, device-only-resource-policies.md |
| MDM / EDR integration (Jamf, Kandji/Iru, Intune, etc.) | jamf-configuration.md, jamf-mdm.md, kandji-configuration.md, kandji-mdm.md, iru-configuration.md, iru-mdm.md, intune-configuration.md, omnissa-workspace-one-mdm.md, crowdstrike-configuration.md, sentinelone-configuration.md, 1password-configuration.md |
| JIT / ephemeral access, contractor patterns | jit-access-requests.md, resources-reviewing-access-requests.md, ephemeral-access-to-resources.md, vendor-and-contractor-access-management.md, usage-based-auto-lock.md |
| Groups, users, admins, offboarding | groups.md, users.md, admins.md, offboarding-users.md |
| Authentication, sessions, social logins | authentication.md, how-sessions-work.md, social-logins.md |
| Service accounts | service-accounts-guide.md |
| SaaS app gating | saas-app-gating.md, saas-app-gating-best-practices.md |
For comprehensive coverage, see references/ for the full
set of doc summaries. Default to checking — IdP and MDM integration
guides change as vendor UIs and APIs evolve.
npx claudepluginhub twingate-solutions/twingate-assistant --plugin twingate-assistantProvides CDSS development patterns for drug interaction checking, dose validation, clinical scoring (NEWS2, qSOFA), and alert classification integrated into EMR workflows.