{"generated_at":"2026-08-17T10:36:11+00:00","item":{"added_at":"2026-07-05","analysis_method":"capability_triage","category":"Web Connector","description":"Give Claude access to Spark on macOS so it can both answer questions about your workspace and act on it. Search and browse emails, list folders, read full threads with bodies and attachments, look up ","did":"ant-dir-spark","homepage_url":"","icon":"https://claude.ai/api/dxt/extensions/ant.dir.gh.readdle.spark-claude-extension/versions/1.2.2/icon.png","id":"ant.dir.spark","installs":5848,"last_scanned":"2026-07-05","license":"","long_description":"Give Claude access to Spark on macOS so it can both answer questions about your workspace and act on it. Search and browse emails, list folders, read full threads with bodies and attachments, look up contacts, check calendar events, find mutual availability with teammates, and review meeting transcripts. With write access, Claude can also compose drafts (new, reply, forward, with attachments, or from saved templates) and share them with teammates, post team chat comments on shared threads, triage messages (archive, pin, snooze, move, label, mark as done, share with team, assign and delegate), reclassify smart categories, and manage contacts (block/accept, category, important/primary, auto-summary). Tools are discovered dynamically from the running Spark Desktop app. Each account and shared inbox has its own access level - read-only or triage - configurable in Spark Desktop > Settings > AI Agents.","name":"Spark","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=ant-dir-spark&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"","publisher_url":"","repository_url":"","risk":"medium","risk_severity":"medium","security_risks":[{"description":"The connector can access sensitive workspace data including email threads (bodies and attachments), contacts, calendar events, availability, and meeting transcripts.","risk_type":"reads_private_data","severity":"medium","title":"Reads your private information"},{"description":"With write/triage access enabled per account/inbox, the connector can draft and send/forward emails, add comments, and perform mailbox triage actions such as moving, labeling, snoozing, pinning, archiving, and updating contact settings.","risk_type":"modifies_data","severity":"medium","title":"Can change or update your information"},{"description":"When granted triage/write permissions, the connector can compose and send new emails, replies, and forwards (potentially with attachments) and post team-chat style comments that appear to originate from you.","risk_type":"sends_messages_as_you","severity":"medium","title":"Can send messages as you"},{"description":"Access is mediated via the Spark Desktop app’s AI Agents settings; if the app maintains ongoing authorization per account/shared inbox, the connector effectively relies on persistent credentials until permissions are changed or revoked.","risk_type":"requires_persistent_credentials","severity":"medium","title":"Stores long-lived access tokens"}],"signature_status":"unknown","source_code_reviewed":false,"tags":["modifies_data","reads_private_data","requires_persistent_credentials","sends_messages_as_you"],"tools":[{"description":"Lists and retrieves configured Spark email accounts and shared inbox contexts.","name":"accounts"},{"description":"Lists and browses mailbox folders/labels within an account.","name":"folders"},{"description":"Fetches email message metadata and possibly message content from the mailbox.","name":"emails"},{"description":"Searches across emails, threads, and related workspace items for matching content.","name":"search"},{"description":"Retrieves a full email thread including bodies and related items.","name":"thread"},{"description":"Downloads or previews email attachments associated with messages/threads.","name":"attachment"},{"description":"Reads calendar events and related scheduling details.","name":"events"},{"description":"Checks availability and computes mutual free/busy windows for teammates.","name":"availability"},{"description":"Reads contact records and associated details from the address book.","name":"contacts"},{"description":"Accesses shared team/inbox collaboration context such as teammates and shared threads.","name":"team"},{"description":"Lists meetings and associated artifacts such as transcripts or summaries.","name":"meetings"},{"description":"Retrieves details for a specific meeting, potentially including transcript content.","name":"meeting"},{"description":"Lists available email templates for composing drafts.","name":"templates"},{"description":"Retrieves a specific email template for reuse in composing.","name":"template"},{"description":"Creates or edits email drafts (new/reply/forward) and may attach files or apply templates.","name":"draft","risk":{"category":"state_change","level":"medium","why":"Creating or editing drafts changes mailbox state and can stage content for sending, including attachments."}},{"description":"Posts a team chat/comment on a shared thread for collaboration.","name":"comment","risk":{"category":"sends_externally","level":"medium","why":"Comments are shared with other users and can leak sensitive information to teammates/shared inbox participants."}},{"description":"Performs mailbox triage actions on messages/threads (e.g., archive, move, label, snooze, pin, mark done, assign/delegate, share).","name":"action","risk":{"category":"state_change","level":"medium","why":"Triage actions modify message state and routing (move/label/snooze/assign/share), impacting workflow and access."}},{"description":"Updates contact settings or performs contact management actions (e.g., block/accept, categorize, set important/primary, auto-summary).","name":"contact-action","risk":{"category":"state_change","level":"medium","why":"Contact actions can alter address book state and communication permissions (e.g., blocking/accepting) and metadata."}}],"tools_count":18,"type":"web_connector","url":"","uuid":"ant.dir.gh.readdle.spark-claude-extension","version":""},"query_key":"spark","schema_version":1,"status":"match"}
