Slack MCP
Read channels, post messages, and search a Slack workspace from an AI agent.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for Slack MCP, derived from its capabilities.
AIVSS 9.4 · Critical
View MAESTRO 7-layer threat model →Overview
The Slack connector lets agents read and post messages across channels, search history, and interact with a workspace's people and content. It authenticates with workspace tokens that can span many channels. Message content from a workspace can carry prompt-injection payloads, and posting rights let an agent broadcast to teammates, so token scoping and confirmation on posts matter.
Key features
- Post and reply to channel messages
- Search workspace history
- List channels and users
- DM and thread support
Use cases
- Summarize channel activity
- Post agent updates to a team