Send messages and interactive cards to Feishu (飞书) and Lark channels via webhooks or Bot API. Create rich-text announcements, marketing updates, and team notifications. Trigger phrases: "post to feishu", "feishu message", "lark message", "feishu webhook", "lark webhook", "send to feishu", "send to lark", "feishu bot", "lark bot", "飞书", "飞书机器人".
This skill sends messages, interactive cards, and marketing content to Feishu (飞书) and Lark group chats, using either a Custom Bot Webhook (simple, single-group) or the App Bot API (full-featured: any chat, image upload, at-mentions, card management, event receipt). It solves the problem of programmatically delivering rich workplace notifications — plain text, structured rich-text posts with links and at-mentions, and interactive cards with headers, sections, and action buttons — to ByteDance's Feishu and its international Lark counterpart.
The SKILL.md is a self-contained how-to. It first checks which credentials are set (`FEISHU_WEBHOOK_URL`, optional `FEISHU_WEBHOOK_SECRET`, or `FEISHU_APP_ID`/`FEISHU_APP_SECRET`) and, if none are, walks the user through creating a Custom Bot or an Open Platform app with the right permissions. It documents both China (open.feishu.cn) and international (open.larksuite.com) webhook and API base URLs, provides curl examples for plain-text, at-mention-all, and bilingual rich-text posts, a rich-text tag reference, HMAC-SHA256 signed-webhook request construction for secret-protected bots, and interactive card JSON structures.
It targets developers, marketers, and team-operations users who want to push announcements, product updates, and notifications into Feishu/Lark from scripts or agents. Its behavior is limited to outbound messaging via official webhook and Bot API endpoints. Credential handling follows standard practice — env vars documented for a `.env` file and presence-checked with shell parameter expansion that prints only whether each is set, not its value — and it uses signature verification where a webhook secret is configured. There is no credential exfiltration, destructive operation, or remote code execution.
Custom Bot Webhook (needs `FEISHU_WEBHOOK_URL`, optional `FEISHU_WEBHOOK_SECRET`) sends text, rich text, and cards to a single group. App Bot API (needs `FEISHU_APP_ID` + `FEISHU_APP_SECRET`) can send to any chat, upload images, at-mention users, manage cards, and receive events.
Yes. It documents both endpoint sets — open.feishu.cn for Feishu (China) and open.larksuite.com for Lark (international) — for webhooks and API base URLs, and shows bilingual (zh_cn / en_us) rich-text examples.
If `FEISHU_WEBHOOK_SECRET` is set, the request is signed by concatenating timestamp + newline + secret, computing HMAC-SHA256 with an empty key, base64-encoding it, and including both `timestamp` and `sign` in the JSON body.
The skill instructs the user how to set up a Custom Bot (via group settings > Bots > Add Bot > Custom Bot) or create an app on the Feishu Open Platform / Lark Developer Console with `im:message:send_as_bot` and `im:chat:readonly` permissions, then add the values to `.env`.
Plain text (including at-mention-all), structured rich-text posts with bold, links, at-mentions and images, and interactive cards with headers, content sections, images, and action buttons.
Quick Setup:
.claude/skills/Repository
openclaudia/openclaudia-skills