feishu-cal
Pass
Audited by Gen Agent Trust Hub on Apr 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: No malicious behavior, obfuscation, or persistence mechanisms were detected. The skill performs legitimate calendar management tasks.
- [EXTERNAL_DOWNLOADS]: The tool communicates with official Feishu API endpoints, which is appropriate for a calendar integration with a well-known service.
- [PROMPT_INJECTION]: The skill ingests untrusted data from calendar event fields (titles, descriptions). While it lacks explicit boundary markers or sanitization, the processing of this data is limited to display and storage, minimizing the risk of indirect prompt injection.
Audit Metadata