catalyst-center-readonly
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security vulnerabilities were detected. The skill is designed for read-only operations and follows standard security patterns.
- [CREDENTIALS_UNSAFE]: The skill correctly uses environment variables (
CATALYST_CENTER_HOST,CATALYST_CENTER_USERNAME,CATALYST_CENTER_PASSWORD) for authentication rather than hardcoding secrets, which is consistent with secure development practices. - [EXTERNAL_DOWNLOADS]: The skill references the
cisco-en-programmability/catc-mcp-ossrepository and Cisco DevNet sandboxes (sandboxdnac.cisco.com). These are official resources provided by a well-known technology vendor for network management and testing. - [PROMPT_INJECTION]: The instructions focus on operational accuracy and data provenance (such as naming the appliance and timestamping data). There are no instructions that attempt to bypass safety guidelines or override agent behavior.
- [DATA_EXFILTRATION]: Network communication is limited to the configured Catalyst Center appliance for the purpose of retrieving inventory and health data, which is the primary and stated purpose of the skill.
Audit Metadata