Feishu Backup

Security checks across malware telemetry and agentic risk

Overview

This Feishu backup skill has a clear purpose, but the actual Feishu downloader and argument logic it runs are outside the reviewed artifact.

Install only if you trust or can separately review the shared Feishu downloader components. Confirm which Feishu account or bot is used, which chats it can access, and how long private attachments should remain in ~/.openclaw/doc/backup. Require confirmation before running it on ambiguous backup requests.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The trigger phrases are broad enough that the skill may activate on generic requests like 'save the file locally' or 'back up the PDF I just sent' without clearly requiring Feishu group-chat context. That can cause the agent to invoke this skill for unrelated backup intents, leading to unintended downloads from Feishu and possible mishandling of user data.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal