feishu-drive
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: Feishu Drive management through a bot-enabled interface. It uses token-based API interactions to list, retrieve info, create folders, move, and delete items. The primary security considerations are token exposure in transit/logs and strict adherence to least-privilege access, given the drive:drive capability. No unverifiable binaries or credential-forwarding appear evident in the provided fragment. Overall risk is low to medium, dominated by data exposure risk and proper secure handling of tokens and outputs.
Confidence: 98%
Audit Metadata