skills/larksuite/cli/lark-drive/Gen Agent Trust Hub

lark-drive

Pass

Audited by Gen Agent Trust Hub on Mar 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues were detected. The skill uses a vendor-provided CLI tool (lark-cli) to perform legitimate operations within the Lark/Feishu ecosystem.
  • [COMMAND_EXECUTION]: The skill uses lark-cli to interact with the Lark Drive API. These commands are restricted to the intended purpose of file and comment management.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data exfiltration. The skill facilitates file uploads and downloads between the local system and the Lark platform as requested by the user.
  • [PROMPT_INJECTION]: No prompt injection or safety bypass patterns were found in the instructions or metadata.
  • [REMOTE_CODE_EXECUTION]: No remote code execution patterns or untrusted dependency installations were identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 28, 2026, 02:44 AM