# Gigacatalyst > Gigacatalyst (Giga Next Inc.) is a Y Combinator-backed platform that embeds an API-connected > app builder into B2B SaaS products. Customers describe a dashboard, report, or workflow in > natural language and it is generated against the host product's own APIs, design language, > roles, and permissions. Generated apps run inside the customer's environment under the > signed-in user's session credentials. Gigacatalyst is primarily an API consumer, but it > publishes one public, unauthenticated API operation of its own, plus an npm SDK and CLI, an > embeddable React chat component, and an open-source browser extension. GENERATED by the API Evangelist enrichment pipeline on 2026-08-14. Gigacatalyst does not publish an llms.txt of its own: https://gigacatalyst.com/llms.txt returns 404, and https://v2.gigacatalyst.com/llms.txt returns an SPA HTML shell rather than a document. Gigacatalyst DOES publish agent-facing markdown, just not at this convention - see Agent instructions below, which is where its API is actually documented. ## API - [Self-serve registration endpoint](https://v2.gigacatalyst.com/api/self-serve/register): POST only, unauthenticated. Accepts a JSON description of a project's API surface (organization, integrations, tools with inputSchema/outputSchema and safetyLevel) and creates a Gigacatalyst workspace with those operations catalogued. Returns a single-use sign-in URL, an account password, a tool count, and a per-connection credential checklist. Verified 2026-08-14: OPTIONS 204 with `allow: OPTIONS, POST`; GET 405. - [API reference (agent.md)](https://v2.gigacatalyst.com/agent.md): the full published request and response contract, the validation rules the endpoint enforces, and the auth vocabulary. This is the only place the API is documented. ## Agent instructions - [Setup guide entry point](https://gigacatalyst.com/self-serve-agent.md): what an agent may read from a project - route paths, HTTP methods, parameter names, response shapes; never source code, credentials, or secrets. - [Full registration guide](https://v2.gigacatalyst.com/agent.md): steps 1-5, from finding the API in a codebase to handing the sign-in link to the human. - [Install page](https://gigacatalyst.com/self): the prompt to paste into Claude Code, Cursor, OpenCode, or Codex. ## SDKs and tools - [npm: gigacatalyst](https://www.npmjs.com/package/gigacatalyst): official SDK, v0.2.2 published 2026-07-07. Embeddable AI chat assistant for Next.js; subpath exports `gigacatalyst/server` and `gigacatalyst/react`. - [CLI: npx gigacatalyst init](https://www.npmjs.com/package/gigacatalyst): scans `app/api/` routes, generates a tools manifest, wires up the chat handler and provider component. - [Browser extension](https://github.com/gigacatalyst/gigacatalyst-go): Apache-2.0. Captures page APIs, applies natural-language CSS/JS changes, persists them per domain. Chrome, Firefox, Edge. - [GitHub organization](https://github.com/gigacatalyst) ## Product - [Home](https://gigacatalyst.com) - [For product teams](https://gigacatalyst.com/for-product-teams) - [Let customers build features](https://gigacatalyst.com/self) - [Dashboards, analytics and BI](https://gigacatalyst.com/dashboard-analytics-bi) - [Customer success agent](https://gigacatalyst.com/customer-success-agent) - [GTM Multiplier](https://gigacatalyst.com/multiplier) - [Free calculators and tools](https://gigacatalyst.com/tools) - [Blog](https://gigacatalyst.com/blog) ## Trust, security and legal - [Trust center](https://gigacatalyst.com/trust): deployment modes, data handling, sub-processors, breach notification. SOC 2 is stated as being pursued, not held. - [Vulnerability disclosure policy](https://gigacatalyst.com/trust/vulnerability-disclosure): effective 2026-05-01, security@gigacatalyst.com, 2-day acknowledgement, 5-day assessment, safe harbour, no paid bounty. - [Terms of service](https://gigacatalyst.com/terms-of-service) - [Privacy policy](https://gigacatalyst.com/privacy-policy) - [Cookie policy](https://gigacatalyst.com/cookie-policy) ## Not published Recorded so an agent does not go looking. Probed 2026-08-14. - No OpenAPI, Swagger, GraphQL, AsyncAPI, or gRPC contract on any host. - No MCP server and no A2A agent card. - No `/.well-known/` document of any kind; `/.well-known/security.txt` is 404. - No pricing page, status page, changelog, or SLA. - No published rate limits and no rate-limit response headers. - No error reference; no status codes documented for any failure mode.