.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/lark-apps/security
home/skills/lark-apps/security
larksuite avatar

lark-apps — security audits

Review recommended

Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.

  • Gen Agent Trust Hub

    pass

    The lark-apps skill facilitates development and management of Lark Miaoda applications. It provides powerful capabilities like SQL execution, file management, and automated deployments. While it involves high-privilege operations, the skill enforces strict user confirmation protocols. A vulnerability surface for indirect prompt injection exists because it ingests various untrusted file formats and web data without explicit sanitization or boundary marking instructions.

    Risk: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONREMOTE_CODE_EXECUTIONPROMPT_INJECTIONJul 23, 2026Full report
  • Socket

    warn

    2 alerts: gptAnomaly

    Jul 23, 2026Full report
  • Snyk

    warn

    Risk: MEDIUM · 2 issues

    Risk: MEDIUMJul 23, 2026Full report