Slack is a channel-based messaging platform. With Slack, people can work together more effectively, connect all their software tools and services, and find the information they need to do their best work — all within a secure, enterprise-grade environment.
Source not yet analyzed — this grade rests on attested signals (CVEs, supply-chain) only. It is a floor: reading the code could raise it, not lower it.
- capability exposureinferred+35
- recent driftinferred+5
- tool safetyinferred+25
- trust mitigatorsmixed−8
inferredmixed
The A–E grade is our heuristic synthesis — a "review this" prompt, not a verdict. Each factor is tagged by what backs it: attested (a verifiable record), reported (a third party's claim), or inferred (our own heuristic, e.g. permissions). See methodology.
graded 15m ago · see ecosystem CVEs →
- C · 52 → C · 57
no known CVEs for this server.
- highexfiltration comboSLACK_ADD_A_CUSTOM_EMOJI_TO_A_SLACK_TEAM
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_ADD_A_REMOTE_FILE_FROM_A_SERVICE
single tool reads + sends: fs, net, secrets
- highexfiltration comboSLACK_ADD_EMOJI
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_CUSTOMIZE_URL_UNFURL
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_CUSTOMIZE_URL_UNFURLING_IN_MESSAGES
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_ENABLE_PUBLIC_SHARING_OF_A_FILE
single tool reads + sends: fs, net
- highexfiltration comboSLACK_FETCH_ITEM_REACTIONS
single tool reads + sends: fs, net
- highexfiltration comboSLACK_LIST_CANVASES
single tool reads + sends: fs, net
- highexfiltration comboSLACK_REMOVE_A_REMOTE_FILE
single tool reads + sends: fs, net, secrets
- highexfiltration comboSLACK_RETRIEVE_A_USER_S_IDENTITY_DETAILS
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_RETRIEVE_DETAILED_INFORMATION_ABOUT_A_FILE
single tool reads + sends: fs, net
- highexfiltration comboSLACK_REVOKE_PUBLIC_SHARING_ACCESS_FOR_A_FILE
single tool reads + sends: fs, net
- highexfiltration comboSLACK_SEARCH_ALL
single tool reads + sends: fs, net, db
- highexfiltration comboSLACK_SEARCH_FOR_MESSAGES_WITH_QUERY
single tool reads + sends: fs, net, db
- highexfiltration comboSLACK_SEARCH_MESSAGES
single tool reads + sends: fs, net, db
- highexfiltration comboSLACK_START_CALL
single tool reads + sends: net, secrets
- highexfiltration comboSLACK_UPDATES_AN_EXISTING_REMOTE_FILE
single tool reads + sends: fs, net, secrets
- highexfiltration comboSLACK_UPLOAD_OR_CREATE_A_FILE_IN_SLACK
single tool reads + sends: fs, net, secrets
- hightoxic flow (lethal trifecta)SLACK_FETCH_ITEM_REACTIONS
single tool reads private data, ingests untrusted content, and reaches the network: fs, net
- hightoxic flow (lethal trifecta)SLACK_RETRIEVE_DETAILED_INFORMATION_ABOUT_A_FILE
single tool reads private data, ingests untrusted content, and reaches the network: fs, net
- hightoxic flow (lethal trifecta)SLACK_UPLOAD_OR_CREATE_A_FILE_IN_SLACK
single tool reads private data, ingests untrusted content, and reaches the network: fs, net, secrets
- lowexfiltration comboSLACK_FIND_CHANNELS
single tool reads + sends: net, db
- lowexfiltration comboSLACK_FIND_USERS
single tool reads + sends: net, db
- recent drift+5 capability drift →
Heuristic, inferred signals — false positives (legitimately powerful tools, forks, language ports) are expected. Treat each as "review this", not a verdict. See the ecosystem-wide picture on the security hub, or the fleet security of slack.