catalyst-by-zoho

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for the agent to execute various Catalyst CLI commands, such as catalyst init, catalyst functions:add, and catalyst deploy. It explicitly mandates the use of the non-interactive (-ni) flag to ensure predictable behavior in automated environments.
  • [DATA_EXPOSURE]: The skill reads from local configuration files (.catalystrc and catalyst.json) to identify the active project and organization IDs. This is used for context awareness and to avoid asking the user for IDs that are already available in the workspace.
  • [EXTERNAL_DOWNLOADS]: The skill references official Zoho Catalyst documentation (docs.catalyst.zoho.com) and the author's public GitHub repository (github.com/catalystbyzoho/agent-skills) for reporting feedback and issues. These are verified vendor resources.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 11:14 AM
Security Audit — agent-trust-hub — catalyst-by-zoho