feishu-perm

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes collaborator information and has the capability to modify document permissions. This creates a surface where malicious identifiers (like spoofed emails or names containing instructions) could potentially influence the agent's behavior during permission management tasks.
  • Ingestion points: Data returned from the list action in feishu_perm.
  • Capability inventory: Modifying document access levels via add and remove actions.
  • Boundary markers: None present in the skill definition.
  • Sanitization: Not described in the provided configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 11:15 AM
Security Audit — agent-trust-hub — feishu-perm