Skills
Skills for governed security changes
Common firewall change workflows executed with review, approval, and evidence.
Actions
Palo Alto actions AI Workers can run

Objects: Create/Update Address / Address-group

Create/Update Service / Service-group

Security Policy: Create/Update Rule

Reorder

Enable/Disable

NAT: Create/Update NAT Rule

Commit & Validate: Validate

Commit / Push

Check job status

App-ID / URL / EDL: Update URL category

Refresh EDL

GlobalProtect / VPN: Update access groups/tags

Logging & Evidence: Fetch Config Diff

Attach snippets

Post job output back to ticket
Prebuilt object, policy, NAT, and commit actions—plus diffs and evidence.
Show all
ai worker os
Powered by the ai.work platform
Guardrails, approvals, supervised execution, and audit trails—native to the system.
Try it with AI Workers
Works across AI Workers
Use Palo Alto with current and future Workers:
Henry
Launched
IT Service
Firewall access, allowlists, NAT updates, incident hotfixes
Alice
Coming soon
HR Ops
Vendor onboarding change sets tied to tickets
John
Coming soon
Procurement
Access revocations on offboarding (via group/tag cleanup)
Run security changes with governance built in—from request to commit.






















