lark-setup
Set up Feishu/Lark after installing feishu2codex: install the official lark-cli runtime if missing, initialize app configuration, start browser/devi…
它会碰到什么
这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。
技能内容
Set up Feishu/Lark
Use this workflow when the user installs feishu2codex, asks to connect Feishu/Lark, or a bundled Lark skill cannot run because lark-cli is missing or unauthenticated.
1. Ensure the official runtime exists
The plugin's trusted SessionStart hook normally installs the matching runtime before this Skill runs. Check the result without changing state:
command -v lark-cli && lark-cli --version
If lark-cli is still missing, verify that npm is available, then install the runtime version matching the bundled Skills:
npm install --global --no-audit --no-fund @larksuite/cli@1.0.73
Run lark-cli --version again and require version 1.0.73 before continuing. If npm is unavailable, tell the user that Node.js/npm is required and stop before attempting authentication.
2. Configure and authenticate
Read the sibling ../lark-shared/SKILL.md completely, then follow its configuration and split OAuth flow exactly. In particular:
- initialize missing app configuration with
lark-cli config init --new; - prefer least-privilege domain or scope authorization for the user's intended workflow;
- return the unmodified verification URL and generate the required QR code;
- never print app secrets, access tokens, device codes, or stored credentials;
- verify completion with
lark-cli auth status --json --verify.
Do not claim setup is complete until the verification response reports a valid signed-in user identity.
想直接用这个技能?
本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。
它属于哪个仓库
plugins/zlsbksdxl/codex-lark/skills/lark-setup/SKILL.md