← Back to Skills Marketplace
maverick

Slack mcp

by Maverick · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ✓ Security Clean
26
Downloads
0
Stars
0
Active Installs
1
Versions
Install in OpenClaw
/install maverick-slack-mcp
Description
Search, read, and update Slack messages, channel history, canvases, and users via Slack's hosted MCP server (https://mcp.slack.com/mcp). Use when the user as...
README (SKILL.md)

Slack

Quick start

Always invoke through bash {baseDir}/scripts/invoke.sh — never call mcporter directly. The wrapper seeds the OAuth vault from the env-supplied tokens when needed, then calls mcporter.

bash {baseDir}/scripts/invoke.sh call maverick-slack.search_messages query="launch"
bash {baseDir}/scripts/invoke.sh call maverick-slack.conversations_list
bash {baseDir}/scripts/invoke.sh call maverick-slack.users_list

For structured output (also surfaces transport errors as JSON envelopes — workaround for mcporter #153):

bash {baseDir}/scripts/invoke.sh call --output json maverick-slack.search_messages query="launch" | jq '.result.content'

Discover available tools and schemas:

bash {baseDir}/scripts/invoke.sh list maverick-slack --schema

Safety

Write operations (chat_postMessage, canvas edits, replies, message updates, and other externally visible Slack changes) modify Slack content visible to the connected workspace. Confirm clear user intent before invoking write tools — search and read tools are safe to call freely while exploring. Show the exact composed message and get confirmation before posting, and never post to a channel the user has not explicitly named.

Authentication

Tokens are provisioned and rotated automatically. If a call returns HTTP 401 that doesn't recover within a few seconds, the OAuth grant has been revoked — re-authorize the integration to refresh credentials.

Data flow

Tool calls travel to Slack's hosted MCP service at https://mcp.slack.com/mcp over HTTPS, authenticated via OAuth. Slack sees the message, channel, thread, canvas, and user data referenced by each call. Use this skill for Slack-related work only; do not pass unrelated sensitive content through these tools.

Dependencies

  • mcporter (github.com/steipete/mcporter) — MCP CLI used to invoke Slack's hosted MCP server. Auto-installed via npm install -g --ignore-scripts mcporter if missing on PATH (see install spec in frontmatter). The install spec uses unpinned mcporter (npm latest); operators with strict supply-chain controls should override the install to pin a specific version (e.g. mcporter@\x3Cversion>).
  • jq (stedolan.github.io/jq) — JSON processor used by the vault initializer. System dependency; install via your OS package manager (apt install jq, brew install jq, etc.).
  • flock (part of util-linux) — file locking used to serialize concurrent vault writes. Available by default on Linux; on macOS install via brew install flock.
  • shasum (Perl, ships with Digest::SHA) — computes the SHA-256 hashes used to derive the mcporter vault key and the provisioned-token marker. Preinstalled on macOS and on Debian/Ubuntu (incl. the deployed cloudflare/sandbox Ubuntu 22.04 image); on minimal Linux images install perl-Digest-SHA. The script invokes shasum -a 256 rather than GNU sha256sum so it runs on stock macOS without coreutils.
Usage Guidance
Install only if you are comfortable granting this skill Slack OAuth access. Confirm any post, reply, edit, or canvas change before it is sent, and consider pinning the mcporter dependency if you need strict supply-chain control.
Capability Analysis
Type: OpenClaw Skill Name: maverick-slack-mcp Version: 1.0.0 The skill provides a wrapper for the mcporter CLI to interact with Slack's official MCP server (mcp.slack.com). The initialization script (init-mcporter.sh) securely manages OAuth tokens by seeding the local mcporter vault, employing security best practices such as using environment variables for secrets to avoid process-list exposure and implementing file locking for atomic writes. The behavior is well-documented and strictly aligned with the stated purpose of Slack integration.
Capability Tags
requires-oauth-tokenrequires-sensitive-credentials
Capability Assessment
Purpose & Capability
The stated purpose matches the implementation: it invokes Slack's hosted MCP server for Slack search, read, and write workflows. Users should notice that Slack write tools can affect visible workspace content.
Instruction Scope
The skill gives explicit safety instructions to confirm Slack write operations and named channels before posting, while allowing read/search exploration under the connected Slack authorization.
Install Mechanism
The skill depends on mcporter and documents an unpinned npm latest install; this is disclosed and purpose-aligned, but operators who need reproducibility should pin the package version.
Credentials
Slack OAuth access, refresh, and client ID environment variables are required. This is expected for Slack MCP access, but these credentials grant workspace access through the connected account.
Persistence & Privilege
The wrapper seeds a persistent local mcporter credential vault and a token-hash marker file. This is disclosed and scoped to OAuth setup, but the local vault should be protected.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install maverick-slack-mcp
  3. After installation, invoke the skill by name or use /maverick-slack-mcp
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
Initial release of maverick-slack-mcp skill. - Enables searching, reading, and updating Slack messages, channel history, canvases, and users via Slack’s hosted MCP server. - Provides secure integration with Slack, handling authentication and token rotation automatically. - Offers a wrapper script for all invocations, supporting safe message posting and explicit user confirmation. - Includes instructions for installation and required dependencies (`mcporter`, `jq`, `flock`, `shasum`). - Details data flow, safety guidance, and quick start command examples for Slack operations.
Metadata
Slug maverick-slack-mcp
Version 1.0.0
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 1
Frequently Asked Questions

What is Slack mcp?

Search, read, and update Slack messages, channel history, canvases, and users via Slack's hosted MCP server (https://mcp.slack.com/mcp). Use when the user as... It is an AI Agent Skill for Claude Code / OpenClaw, with 26 downloads so far.

How do I install Slack mcp?

Run "/install maverick-slack-mcp" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Slack mcp free?

Yes, Slack mcp is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Slack mcp support?

Slack mcp is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Slack mcp?

It is built and maintained by Maverick (@maverick); the current version is v1.0.0.

💬 Comments