catalyst8000
Pass
Audited by Gen Agent Trust Hub on Jul 2, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCREDENTIALS_UNSAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references automation tools, SDKs, and repositories from the official Cisco DevNet GitHub organization and public package registries. These are well-known, legitimate resources for Cisco network automation.
- [CREDENTIALS_UNSAFE]: Hardcoded credentials (admin/C1sco12345) are included in reference files such as references/automation-apis.md and references/devnet-sandbox.md. These are documented as the standard, publicly available credentials for accessing Cisco DevNet sandbox environments.
- [COMMAND_EXECUTION]: Provides examples for managing network infrastructure using common command-line utilities and automation platforms like Terraform and Ansible.
- [PROMPT_INJECTION]: The skill includes patterns for ingesting data from network devices and APIs, which represents a potential surface for indirect prompt injection.
- Ingestion points: REST API responses from vManage and streaming telemetry data from network devices.
- Boundary markers: Not explicitly defined in the provided configuration templates.
- Capability inventory: Configuration deployment via vManage API and direct CLI access to Catalyst 8000v routers.
- Sanitization: No specific data validation or sanitization procedures are outlined for processing external input before it is used in configuration tasks.
Audit Metadata