1---2name: slack-report-builder3description: Use when tasks require slack report builder with credential-aware preflight, deterministic execution, validation gates, and handoff-ready artifacts.4---56# Slack Report Builder78## Quick Reference9| Field | Value |10| --- | --- |11| Skill ID | `76` |12| Provider | `Slack` |13| Operation | `Report Builder` |14| Domain | `Messaging and communications platforms` |15| Runtime archetype | `reporting-engine` |16| Core method | `metric synthesis and rendering` |17| Primary artifact | `slack-report-bundle` |18| Routing tag | `slack:report-builder` |19| Mutating | `no` |20| Release cycles | `1` |2122## Why This Skill Exists23We need this skill because Slack workflows degrade when auth, schema, and side-effect handling drift when integrations are run ad hoc. This specific skill turns Slack Report Builder into a deterministic, auth-checked workflow for generates operational and kpi reports from slack activity..2425## Trigger Checklist26- [ ] The task explicitly requires `Slack Report Builder` rather than generic brainstorming.27- [ ] The provider tenant, workspace, or environment is known before execution begins.28- [ ] Credential reuse has been checked before asking for new secrets.29- [ ] Success criteria, side effects, and handoff owner are clear.30- [ ] If the run mutates provider state, the relevant approval gates are available.3132## Auth & Access Profile33| Field | Value |34| --- | --- |35| External auth required | `yes` |36| API key likely required | `yes` |37| Protocols | `HTTPS/REST`, `webhook callbacks` |38| Mutating | `no` |39| Webhook capable | `no` |4041| Auth Mode | Kind | Env Hints | Validation |42| --- | --- | --- | --- |43| OAuth client or delegated session | `oauth2` | `SLACK_CLIENT_ID`, `SLACK_CLIENT_SECRET` | Reuse an active delegated session or validate the client credentials with a lightweight identity call. |44| Access token or personal access token | `token` | `SLACK_TOKEN`, `SLACK_ACCESS_TOKEN` | Validate the token with the smallest read-only endpoint that proves scope and tenancy. |4546## Inputs (contract)47| Input | Type | Required | Source |48| --- | --- | --- | --- |49| report scope | signal | yes | operator or upstream tool |50| metric definitions | signal | yes | operator or upstream tool |51| presentation template | signal | yes | operator or upstream tool |5253## Outputs (contract)54| Output | Type | Guaranteed | Consumer |55| --- | --- | --- | --- |56| slack-report-bundle | structured-artifact | yes | next workflow or operator |57| slack-report-bundle-scorecard | scorecard | yes | reviewer |58| slack-report-bundle-handoff | handoff-packet | yes | downstream owner |5960## Step-by-Step Implementation Guide611. Define the report audience, metric definitions, and freshness threshold for Slack Report Builder, then confirm which Slack entities are in scope.622. Validate credential reuse and ensure the query window matches the reporting cadence before any render starts.633. Implement generates operational and kpi reports from slack activity. with deterministic metric synthesis, template versioning, and publication gating.644. Capture metric lineage, freshness timestamps, and template identifiers in the report bundle so the output remains auditable.655. Run regression checks that cover stale data, metric drift, and template mismatch before publishing the report.666. Publish the report bundle only after freshness and correctness gates pass, along with any interpretive notes required for downstream readers.6768## Operational Runbook69### Preflight70- Validate the metric definitions, time window, and publication audience before building the report.71- Confirm the source data contract and output template version.7273### Execution74- Compute metrics deterministically and preserve intermediate query identifiers.75- Render the report only after freshness and completeness checks pass.7677### Recovery78- Hold publication when metrics are stale, incomplete, or fail reconciliation checks.79- Rebuild from the last known good query window after correcting the data issue.8081### Handoff82- Return the report bundle, metric lineage, and publication decision.83- Call out any missing windows, excluded entities, or operator notes needed to interpret the report.8485## Validation Gates & Test Matrix86| Gate | Purpose | On Fail |87| --- | --- | --- |88| auth-preflight | Validate credential presence, scope, and environment before work begins. | block execution |89| schema-contract-check | Ensure required signals and payload shapes remain valid. | quarantine and request correction |90| policy-approval-check | Verify the declared approval gates before mutating or publishing state. | pause or route to human review |91| reliability-check | Confirm retries, rollback, and checkpoint readiness. | rollback or fail closed |9293- Required validation suites: `unit`, `integration`, `regression-baseline`9495## Failure Modes & Recovery Playbook96| Code | Trigger | Action |97| --- | --- | --- |98| `E_METRIC_DRIFT` | Metric outputs diverge from the declared definitions or previous baseline. | Hold publication and attach a metric-delta summary. |99| `E_STALE_DATA` | Input data freshness falls below the agreed threshold. | Block delivery and rerun once the source window recovers. |100| `E_TEMPLATE_MISMATCH` | The requested report template no longer matches the computed fields. | Quarantine the render and request template alignment. |101102## Tool Call Implementation103- Reuse existing credentials first. Check environment variables, secure stores, and active sessions before prompting.104- Start with the smallest authenticated read or validation call that proves identity and scope.105- Preserve request, response, and approval traces in `slack-report-bundle` so downstream owners do not need to rediscover context.106- If any auth, contract, or approval gate fails, halt execution and attach remediation guidance instead of guessing.107108## Credential Reuse Policy109- Reuse valid provider credentials by default and prefer tenant-scoped sessions over newly created secrets.110- Prompt for credentials only when they are missing, invalid, expired, or point at the wrong environment.111- For webhook flows, validate the signing secret against a known sample before accepting live traffic.112113## Guardrails114- quality: Hold report publication when metrics drift from declared definitions or freshness thresholds. (`metric-reconcile+freshness-check`)115- reliability: Preserve query lineage and output template versions for every report build. (`lineage-capture`)116- cost: Reuse cached intermediate results when they remain inside freshness tolerance. (`query-cache-policy`)117- compliance: Validate provider key or secret mode (sandbox vs production) before any mutating execution. (`credential-mode-check`)118119## Acceptance Checklist120- [ ] Credential preflight and scope validation completed successfully.121- [ ] Required validation suites ran and all fail-closed gates passed.122- [ ] slack-report-bundle, scorecard, and handoff packet were produced.123- [ ] Any mutations, approvals, or rollbacks are reflected in the artifact bundle.124125## Anti-Patterns126- Do not ask for new credentials before checking reusable auth context.127- Do not skip the read-only or dry-run validation step for mutating work.128- Do not proceed when approval gates, signing secrets, or rollback checkpoints are missing.129- Do not hand off partial or ambiguous provider state as complete.130131## Handoff Contract132- **Produces:** `slack-report-bundle`, execution scorecard, approval trace, and next actions.133- **Consumes:** `report scope`, `metric definitions`, `presentation template`.134- **Readiness rule:** release only after auth, contract, approval, and reliability gates all pass.135- **Downstream hint:** route to `slack:report-builder` consumers with approval and credential context attached.136137## Observability & Continuous Improvement138- SLO: >=99.9% successful runs per 7-day window139- Error budget: <=0.1% critical failures per 7-day window140- Alert triggers:141- credential validation failures exceed baseline142- schema or contract regressions persist for two consecutive runs143- critical posture or rollback events exceed tolerance144- Primary outcome metric: `report freshness`145- Secondary metrics: `metric correctness`, `delivery timeliness`146- Review cadence: `daily`