skills/larksuite/cli/lark-drive/Gen Agent Trust Hub

lark-drive

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is authored by a recognized vendor and uses a localized binary (lark-cli) to interact with official cloud service APIs. All operations are well-documented and restricted to the intended business domain (Lark/Feishu Drive management).
  • [SAFE]: High-risk operations such as file deletion (drive +delete), permission modification (drive permission.public patch), and member removal (drive +member-remove) are protected by mandatory confirmation flags (--yes) and clear instructional guardrails that prevent automated or silent execution.
  • [SAFE]: Complex workflows like 'Knowledge Organize' and 'Permission Governance' use a multi-stage state machine that prioritizes read-only analysis and user-facing planning before any write operations are permitted. This design effectively mitigates risks associated with data processing and automated management.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 04:35 AM
Security Audit — agent-trust-hub — lark-drive