Documents & Data · IN-DEPTH PROFILE

lark-contact

Lark Contact resolves Feishu people and organizational identities.

Best for

Agents resolving Feishu recipients

What you get

Resolve a person + Retrieve a profile

Main limitation

User and bot identities expose different operations and directory visibility.

First risk

Personal data exposure. Directory searches and profiles contain personal information. Request only necessary fields and do not expose results beyond the user's authorized context.

EVIDENCE FRESHNESS

Three checks, kept separate

A recent source check is not a runtime test or security audit.

Upstream sourceChecked 2026-08-20

Pinned revision · 755daa4d

Open pinned commit
SkillSignal profileSource-grounded

Updated 2026-08-20

Runtime & securityNot independently verified

Source review does not certify behavior or safety.

30-SECOND BRIEF

What it does—and when it fits

Lark Contact resolves Feishu people and organizational identities. Its upstream SKILL.md separates user and bot capabilities, supports searching people by name or email to obtain open_id, retrieves profiles when permitted, and advises going directly to messaging or calendar Skills when an open_id is already known.

INSTALL BY AGENT

Choose your Agent

Paths come from official Agent docs or the universal installer behind skills.sh. Compatibility still follows this Skill's record.

Native

This Skill's current record explicitly names this Agent. Still inspect scripts, permissions, and external dependencies first.

Project scope.claude/skills/lark-contact/
Personal scope~/.claude/skills/lark-contact/

Use project scope for team sharing and personal scope across repositories. The installer defaults to project scope; add -g for personal scope.

Install command (project scope)

This source cannot produce a reliable command. Open the listed source and copy the complete Skill folder manually.

Official agent docs

Claude Code discovers custom Skill folders automatically at project or personal scope.

View path evidence

TYPICAL WORKFLOW

A practical workflow

01

Resolve a person

Search by name or email and confirm the intended user.

02

Retrieve a profile

Fetch permitted user details from a known open_id.

03

Route the next action

Pass the resolved identity to messaging or calendar work without redundant contact calls.

THE TRADEOFFS

Advantages and tradeoffs

Notable strengths

  1. This profile is manually organized around the current upstream SKILL.md workflow.
  2. The capability boundary remains explicitly tied to open.feishu.cn.
  3. Core uses, limitations, and risks are separated for pre-install review.

Limitations

  1. User and bot identities expose different operations and directory visibility.
  2. Name matches can be ambiguous and must be confirmed with additional attributes.

BEST FIT

Who it is for

Agents resolving Feishu recipients

Teams automating people-aware workflows

BEFORE YOU USE IT

Risks to review before use

High

Personal data exposure

Directory searches and profiles contain personal information. Request only necessary fields and do not expose results beyond the user's authorized context.

High

External data and identity boundary

Requests access Feishu tenant resources. Use the correct identity, least-privilege scopes, and keep sensitive content out of logs.

SECURITY

What the permission profile means

  • Declared access remains governed by the current upstream SKILL.md and runtime requests.
  • Treat Feishu documents, messages, people, and business records as permission-controlled data.
  • SkillSignal has not independently executed or security-audited this package; external skills.sh labels are not SkillSignal certification.

Not a security certification. External ratings are attributed references. SkillSignal has not independently executed or security-reviewed this Skill.

INSIDE THE PACKAGE

Indexed files

SKILL.mdUpstream Skill instructionsSource-linked

TAGS

feishucontactsidentity

Manually expanded from the current upstream SKILL.md and linked source at open.feishu.cn, checked 2026-08-19. This is an original summary, not an execution result or security certification.