The 24 Slack security checks Black Cat runs
Black Cat SSPM evaluates 24 security policies against your Slack configuration on every scan, classifies each finding by risk, and provides remediation steps. Browse them by topic below.
How to connect Slack — what access Black Cat needs, and why.
Access control & privilege
9 checks · highest severity: high
Governance & compliance
13 checks · highest severity: low
Access control & privilege (9)
- Public Channel Creation Unrestricted severity: medium
- App Management Unrestricted severity: medium
- Guest Slash Commands severity: low
- Excessive Admins severity: medium
- Excessive Owners severity: medium
- External Admin severity: high
- Owner Redundancy severity: high
- Guest Multi Channel severity: low
- App Approval Not Required severity: medium
Governance & compliance (13)
- Message Edit Unrestricted severity: low
- Slackbot Responses Unrestricted severity: low
- Everyone Notify General severity: low
- Archive Channel Unrestricted severity: low
- Remove Public Channel Unrestricted severity: low
- Workflow Creation Unrestricted severity: low
- Remove Private Channel Unrestricted severity: low
- User Groups Unrestricted severity: low
- Notify Channel Unrestricted severity: low
- Display Name Not Validated severity: low
- Default Channels Excessive severity: low
- Inactive Channel severity: low
- App No Description severity: low
Other checks (2)
severity: high MFA Not Required fix difficulty: easy #
Enable mandatory two-factor authentication for the workspace
- Sign in to your Slack workspace as an Owner
- Navigate to admin settings > Authentication
- Under "Two-factor authentication", select "Require two-factor authentication for everyone in the workspace"
- Click "Save Changes" to apply the policy
- Notify members to enroll their authenticator apps before the deadline
Satisfies: ISO 27001:2022 A.8.5 SOC 2 Type II CC6.1 CIS Controls v8 CIS-06.3 NIST CSF 2.0 PR.AA-03 GDPR (SaaS Security) GDPR-32.1b.i HIPAA (SaaS Security) HIPAA-312.d NIS2 Directive NIS2-21.j DORA (SaaS Security) DORA-9.4
severity: high User No MFA fix difficulty: easy #
Enable two-factor authentication for the flagged user account
- If workspace-wide 2FA is not yet enforced, first enable it in admin settings > Authentication
- Ask the affected user to open their Slack Profile > Account > Two-factor authentication
- The user should choose an authenticator app (e.g., Google Authenticator, Authy) or SMS
- The user follows the enrollment wizard and saves backup codes in a secure location
- Verify the user's 2FA status in the admin member list (admin settings > Members)
Satisfies: ISO 27001:2022 A.8.5 SOC 2 Type II CC6.1 CIS Controls v8 CIS-06.3 NIST CSF 2.0 PR.AA-03 GDPR (SaaS Security) GDPR-32.1b.i HIPAA (SaaS Security) HIPAA-312.d NIS2 Directive NIS2-21.j DORA (SaaS Security) DORA-9.4