Install
$ agentstack add skill-dropfan-claude-code-plugins-lark-markdown ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
> ⚙️ Cowork / Claude Desktop 执行环境说明(自动注入) > > 本技能依赖本地 lark-cli(@larksuite/cli,可用 command -v lark-cli 定位)及其 ~/.lark-cli 登录态(应用密钥存于 macOS keychain)。 > > 在 Cowork 中运行任何 lark-cli 命令时,必须在本地 macOS 上执行(使用 Desktop Commander 的 start_process / interact_with_process,或其它本地 shell 工具),不要用隔离的 Linux 沙箱 mcp__workspace__bash——沙箱里没有 lark-cli、也读不到 keychain。 > 执行前确保 npm 全局 bin 目录(npm prefix -g 输出目录下的 bin)在 PATH 中。 > > (在 Claude Code 中可忽略本说明,lark-cli 在本机 shell 直接可用。)
markdown (v1)
CRITICAL — 开始前 MUST 先用 Read 工具读取 [../lark-shared/SKILL.md](../lark-shared/SKILL.md),其中包含认证、权限处理
快速决策
- 身份:Markdown 文件通常属于用户云空间资源,优先使用
--as user。如为自动化场景,或应用已创建并持有目标文件权限,可按场景使用--as bot。首次以user身份访问前执行lark-cli auth login markdown +create/+overwrite失败时,先判断是不是身份和权限问题:bot更常见的是 app scope 或目标目录 ACL,user更常见的是用户授权或用户 ACL;不要不加判断地来回切身份重试。
- 用户要上传、创建一个原生
.md文件,使用lark-cli markdown +create - 用户要比较原生
.md文件的历史版本差异,或比较远端 Markdown 与本地草稿,使用lark-cli markdown +diff - 用户要读取 Drive 里某个
.md文件内容,使用lark-cli markdown +fetch - 用户要对 Markdown 文件做局部文本替换 / 正则替换,优先使用
lark-cli markdown +patch - 用户要覆盖更新 Drive 里某个
.md文件内容,使用lark-cli markdown +overwrite - 用户要先拿 Markdown 文件的历史版本号,再做比较/下载/回滚,先用 [
lark-drive](../lark-drive/SKILL.md) 的lark-cli drive +version-history - 用户要把本地 Markdown 导入成在线新版文档(docx),不要用本 skill,改用 [
lark-drive](../lark-drive/SKILL.md) 的lark-cli drive +import --type docx - 用户要对 Markdown 文件做rename / move / delete / 搜索 / 权限 / 评论等云空间(云盘/云存储)操作,不要留在本 skill,切到 [
lark-drive](../lark-drive/SKILL.md) markdown +create/+overwrite命中missing scope、permission denied、not found、version limit时,默认停止重试并按报错 hint 处理;只有rate limit或临时网络错误才做有限重试。
核心边界
- 本 skill 处理的是 Drive 中作为普通文件存储的 Markdown,不是 docx 文档
--name和本地--file文件名都必须显式带.md后缀;不满足时 shortcut 会直接报错--content支持:- 直接传字符串
@file从本地文件读取内容-从 stdin 读取内容markdown +patch的内部语义是:先完整下载 Markdown,再本地替换,再整文件覆盖上传markdown +patch不是服务端原子 patch;它是 CLI 侧编排出来的局部更新能力markdown +patch当前只支持单组--pattern/--contentmarkdown +patch替换后的最终内容不能为空;CLI 会拒绝上传空文件,因为 Drive 不支持零字节 Markdown,且空文件通常是误操作--file只接受本地.md文件路径
正则替换时要特别注意 --pattern 的转义:
# BAD: 未转义正则特殊字符,可能匹配到错误位置
lark-cli markdown +patch --file-token boxcnxxxx --regex --pattern "version (1.0)" --content "version (2.0)"
# GOOD: 显式转义括号和点号
lark-cli markdown +patch --file-token boxcnxxxx --regex --pattern "version \\(1\\.0\\)" --content "version (2.0)"
Shortcuts(推荐优先使用)
Shortcut 是对常用操作的高级封装(lark-cli markdown + [flags])。有 Shortcut 的操作优先使用。
| Shortcut | 说明 | |----------|------| | [+create](references/lark-markdown-create.md) | Create a Markdown file in Drive | | [+diff](references/lark-markdown-diff.md) | Compare two remote Markdown versions, or compare remote Markdown against a local file | | [+fetch](references/lark-markdown-fetch.md) | Fetch a Markdown file from Drive | | [+patch](references/lark-markdown-patch.md) | Patch a Markdown file in Drive via fetch-local-replace-overwrite | | [+overwrite](references/lark-markdown-overwrite.md) | Overwrite an existing Markdown file in Drive |
参考
- [lark-shared](../lark-shared/SKILL.md) — 认证和全局参数
- [lark-drive](../lark-drive/SKILL.md) — Drive 文件管理、导入 docx、move/delete/search 等
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: DropFan
- Source: DropFan/claude-code-plugins
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.