T05 · Unauthorized Access and Privilege Escalation
- Location
SKILL.md:36- Finding
Persistent Memory Access Exceeds the Document-Summarization Data Boundary
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill does what it says, but it automatically reads full Feishu/Lark documents and consults persistent memory without clear confirmation or tight scoping.
Review before installing if your Feishu/Lark documents or agent memory may contain sensitive information. Use it only when you are comfortable with linked documents being read in full and summarized into the current chat, and keep the memory-stored summary template free of unrelated private details.
SKILL.md:36Persistent Memory Access Exceeds the Document-Summarization Data Boundary
The skill is designed to read the full contents of a Feishu/Lark document and post a derived summary back into the current chat, but it does not require an explicit confirmation step or present a privacy warning before accessing potentially sensitive document data. This can lead to unintentional disclosure of confidential content, especially when the user shares a link casually or the current chat has a broader audience than the source document.
No suspicious patterns detected.