Skip to content
Back to skills

Slack App Workflow

ASecurity

Plan, build, and validate Slack workspace apps with OAuth, Events API, interactivity, slash commands, modals, and Socket Mode.

  • 7 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added September 5, 2026
ai-agentsapi

Works with

  • api

Security analysis

A100/100

Scanned September 5, 2026

npx -y skills add gaelic-ghost/socket --skill slack-app-workflow --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Slack App Workflow?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Slack App Workflow
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/gaelic-ghost-slack-app-workflow/badge)](https://www.skillsdirectory.com/skills/gaelic-ghost-slack-app-workflow)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: slack-app-workflow
description: Plan, build, and validate Slack workspace apps with OAuth, Events API, interactivity, slash commands, modals, and Socket Mode.
---

# Slack App Workflow

## Workflow

1. Choose a workspace app, distribution model, event delivery route, and a narrow OAuth scope inventory before code.
2. Use Events API plus a public receiver when the service owns inbound HTTPS; use Socket Mode only when its operational model fits the deployment.
3. Verify Slack request signatures, acknowledge events and interactive payloads promptly, and use the response URL or Web API only within their documented lifecycle.
4. Treat workspace, enterprise, channel, user, and installation identities as distinct. Check authorization before acting on a command, shortcut, modal submission, or message event.
5. Make interactive state explicit and short-lived; never place secrets or unverified authority in action values.
6. Validate OAuth reinstall, scope changes, signature failures, retry headers, modal errors, and a workspace-admin removal path.

## Handoffs

Start with [Slack apps](https://api.slack.com/docs/apps) and [Bolt](https://api.slack.com/bolt). Use `webhook-and-event-lifecycle` and the selected server stack skill for implementation.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…