agency-feishu-integration-developer

Pass

Audited by Gen Agent Trust Hub on Aug 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues detected. The skill provides legitimate development guidelines and code templates for the Feishu/Lark platform.
  • [CREDENTIALS_UNSAFE]: The skill correctly instructs developers to store sensitive credentials such as app_secret and encrypt_key in environment variables rather than hardcoding them in source code.
  • [EXTERNAL_DOWNLOADS]: Dependencies are limited to official and well-known libraries, specifically the official Feishu Node.js SDK and the Express framework.
  • [DATA_EXFILTRATION]: Network communication patterns are directed exclusively to the official Feishu API domains (open.feishu.cn).
  • [PROMPT_INJECTION]: The skill contains no instructions aimed at overriding agent behavior, bypassing safety guidelines, or extracting system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 11, 2026, 02:58 PM
Security Audit — agent-trust-hub — agency-feishu-integration-developer