lark-drive
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is authored by a recognized vendor and uses a localized binary (
lark-cli) to interact with official cloud service APIs. All operations are well-documented and restricted to the intended business domain (Lark/Feishu Drive management). - [SAFE]: High-risk operations such as file deletion (
drive +delete), permission modification (drive permission.public patch), and member removal (drive +member-remove) are protected by mandatory confirmation flags (--yes) and clear instructional guardrails that prevent automated or silent execution. - [SAFE]: Complex workflows like 'Knowledge Organize' and 'Permission Governance' use a multi-stage state machine that prioritizes read-only analysis and user-facing planning before any write operations are permitted. This design effectively mitigates risks associated with data processing and automated management.
Audit Metadata