lark-skill-maker
Pass
Audited by Gen Agent Trust Hub on Mar 28, 2026
Risk Level: SAFENO_CODECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill is a legitimate technical resource for orchestrating Lark API calls via the official lark-cli. Analysis found no evidence of prompt injection, data exfiltration, or persistence mechanisms.
- [NO_CODE]: There are no executable scripts or binaries packaged with the skill; it functions as a set of instructions for the agent to follow using pre-installed tools.
- [COMMAND_EXECUTION]: The provided command examples for lark-cli are consistent with documented API usage for the Lark platform and do not involve unauthorized privilege escalation or dangerous shell operations.
Audit Metadata