feishu-cli-perm

Pass

Audited by Gen Agent Trust Hub on Mar 10, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill leverages the Bash tool to run the feishu-cli utility, which interacts with Feishu's API to manage document permissions. This command execution is consistent with the skill's stated purpose of managing cloud documents.
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface through the batch-add command, which processes a local members.json file. Although it reads external data, the risk is considered low due to the structured nature of the CLI input. Evidence Chain: Ingestion points: members.json (SKILL.md). Boundary markers: Absent. Capability inventory: Bash execution of feishu-cli (SKILL.md). Sanitization: None detected in instruction files.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 10, 2026, 05:09 AM