feishu-perm
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes collaborator information and has the capability to modify document permissions. This creates a surface where malicious identifiers (like spoofed emails or names containing instructions) could potentially influence the agent's behavior during permission management tasks.
- Ingestion points: Data returned from the
listaction infeishu_perm. - Capability inventory: Modifying document access levels via
addandremoveactions. - Boundary markers: None present in the skill definition.
- Sanitization: Not described in the provided configuration.
Audit Metadata