This article is aimed at corporate administrators and IT decision-makers, offering an in-depth analysis of the actual engagement levels of third-party applications within the DingTalk ecosystem, as well as the permission risks introduced by intelligent work agents, helping enterprises clarify the security boundaries and governance logic of digital workplaces.

01 The "Moisture Funnel" of Application Markets: Thousands of Third-Party Apps—How Many Are Just Gathering Dust?

We once conducted a comprehensive audit of the third-party application catalog presented on DingTalk's app marketplace. At first glance, the display page features thousands of apps, seemingly forming a comprehensive enterprise-grade operating system. However, when filtering these figures through a funnel composed of "actual activation count" and "daily active call volume," what emerges is a stark cliff-like decay curve: from "thousands" showcased in the market, to "hundreds" actually activated by enterprises, down to merely "dozens" with genuine daily data interactions—over 80% of apps quietly gather dust in the backend "inactive" list. This cannot be called thriving; it more closely resembles a tacit digital pile-up.

Where lies the root cause? Upon dissecting the interaction logic of these apps, the truth becomes slightly awkward: many third-party applications are essentially repackaged "shovel-selling" tools. They remain stuck at basic form generation and simple chart rendering, rarely integrating into core business processes.

In fact, DingTalk itself already offers robust, fundamental capabilities such as approvals, attendance tracking, documents, video conferencing, instant messaging, calendars, and to-do lists. Third-party apps attempting to reinvent the wheel atop this solid foundation are like forcing a plastic toilet into a fully furnished apartment—occupying space without adding value. Unable to connect complex business data, they merely linger in peripheral scenarios.

This is an inevitable growing pain in the early stages of an open ecosystem. Platforms need quantity to sustain their ecosystem narrative; developers need listings for exposure; and enterprise users complete repeated ineffective digital purchases under the illusion that “everything seems to be available.” When IT administrators look at the long list of grayed-out app icons in the backend, they often face an even more absurd reality: having installed countless flashy tools, employees still open DingTalk each day solely to clock in and check group notifications.

02 Enterprises’ “Buying the Box, Returning the Pearl”: Installing Countless Apps, Only to Use Them for Clocking In and Sending Notifications

After auditing the DingTalk backends of dozens of enterprises, a somewhat ironic "engagement funnel" comes into view: dozens of third-party apps lie dormant in the backend, but daily activity curves plummet steadily, ultimately stabilizing around just a few native core modules.

DingTalk’s built-in capabilities—approvals, attendance, documents, video conferencing, instant messaging, calendar, and to-do lists—already form a sufficient foundation for most daily collaboration needs. Yet companies persistently engage in “buying the box and returning the pearl,” aggressively purchasing complex third-party systems from the app marketplace in pursuit of so-called “end-to-end digitization.” The result is often that the platform's intended integration of underlying business processes devolves, at the user level, into superficial tool stacking.

We’ve observed that many enterprises introduce third-party AI office tools hoping to transform workflows. Yet after running them for some time, the most common task employees use these intelligent work agents for is generating bland weekly report summaries. Meanwhile, for truly critical processes involving finance or personnel decisions, everyone still dutifully returns to filling out numbers in DingTalk’s most basic approval forms. Enterprises want only to install tools, showing no real interest in transforming core operations. It’s akin to introducing a full automated production line but ultimately using it merely to affix product labels.

This kind of “superficial usage” may only waste IT budgets under normal circumstances. But danger arises when third-party AI assistants with agency deeply integrate into the DingTalk ecosystem—this habit easily triggers permission loss. If administrators can’t even be bothered to define clear permission boundaries for basic apps, casually granting an AI tool—used only for writing weekly reports—the right to access documents and calendars, it’s equivalent to handing vault keys to a flyer-distributing security guard. When surface-level applications begin probing beyond the trust boundaries of the foundational layer, risks are already planted.

03 Third-Party AI Assistants’ Boundary Testing: Where Should Intelligent Work Agents Draw the Line?

When third-party AI assistants and intelligent work agents enter the DingTalk ecosystem under the banner of “reinventing workflows,” their first move is invariably to request data access. To generate smart weekly reports, they need document and calendar access; to automatically track projects, they require access to to-do lists and approvals; to summarize meeting consensus, they must scrape instant messages and video conference records. The logic sounds flawless, but upon closer inspection of these AI tools’ permission requests, a troubling mismatch emerges: the granularity of permissions provided by the platform is fundamentally misaligned with the voracious appetite of AI for data consumption.

Reviewing permission lists of popular agents reveals that many tools receive a scale-free master key when applying for "read" access. In complex business contexts, the boundary of so-called "read-only" access is extremely blurry. Can we really believe an AI tool claiming to only polish copy isn't doing more than just “looking” if it has access to instant messages? When it feeds chat logs containing sensitive business information as context to large language models, “read-only” has physically transformed into “covert external transmission.”

This is akin to installing a fingerprint lock on a vault door, yet allowing cleaning staff to bring internet-connected robotic vacuum cleaners inside. Under the narrative of “everything can be integrated,” data flow is often implicitly prioritized above all else, while security boundaries easily become optional. When intelligent work agents can effortlessly cross the dividing lines between approval data and daily communication, we must ask: in this battle over permissions, how should platforms define the trust boundary between “official base functions” and “third-party plugins”?

04 “Security Guards” vs. “Colleagues” in Ecosystem Governance: How Should Platforms Define Trust Boundaries?

Within DingTalk’s open ecosystem, the design philosophy behind its permission architecture resembles, to some extent, a complex facility security drill.

We can regard DingTalk’s built-in core capabilities—approvals, attendance, documents, instant messaging, calendar, to-do lists—as “internal colleagues” wearing permanent ID badges. Their internal data flows resemble coworkers casually passing documents—an exchange granted maximum default trust by the system. In contrast, third-party AI assistants and intelligent work agents accessing via open APIs are “visitors” holding temporary letters of introduction. The platform, then, plays the role of the “security guard” standing at the checkpoint.

Yet the guard’s position is profoundly awkward. The more open the ecosystem, the higher the cost and friction of security control. To prevent “covert external transmission,” the guard can only rigidly enforce one line of defense: authorization confirmation. As a result, users frequently suffer jarring degradation in experience. Attempting to let a third-party AI assistant organize your schedule triggers a long list of permission requests; wanting it to link video meeting records brings another pop-up interrogation: “Allow reading?” To use AI for summarizing meeting notes, many people end up blindly clicking “Agree.”

Frequent authorization pop-ups are essentially the platform’s compromise between “ecosystem vitality” and “data security.” The platform attempts to isolate risks via the “principle of least privilege,” but in real-world business scenarios, this often leads to a deadlock: if an intelligent work agent lacks sufficient contextual access, it remains a half-baked tool spouting meaningless platitudes; but if all data access is granted, the visitor becomes an “insider threat” with god-like visibility. Restrict too tightly, and third-party apps become unusable; loosen too much, and the entire system turns into an unsecured construction site where users must navigate exposed rebar while wearing their own hard hats.

When “colleagues” and “visitors” interact freely within the same digital workspace without physical separation, can the guard’s thick registration log truly stop those data movers disguised as “efficiency enhancers”?

05 Closing Silence: A Foundation Drowned in Surface-Level Apps, or an All-Powerful Operating System?

Auditing those third-party AI assistants and intelligent work agents that claim to “reinvent workflows” reveals a somewhat disheartening pattern: while the foundation does expose fundamental capabilities like instant messaging, calendar, to-do lists, and documents, after enterprises invest significant effort integrating these “all-powerful” tools, the most frequent actions remain clocking in, sending notifications, and submitting approvals.

It’s like spending a fortune building a skyscraper equipped with fully automated climate control, only to find every employee enters daily just to heat meals using the public microwave in the lobby.

As countless third-party apps wrap around DingTalk’s skeleton like vines, feeding off data nutrients from attendance, meetings, and calendars, they rarely bear fruit in the form of true “digital transformation.” Instead, data backdoors left open due to excessive permissions and redundant messages generated by API abuse quietly accumulate into a new landscape of digital ruins. Beneath the façade of prosperity lie individuals overwhelmed by surface-level applications. Administrators face thousands of authorized apps in the backend, trying to distinguish which ones are merely “shovel-sellers” from those genuinely “expanding capability,” only to discover that revoking permissions often risks breaking interconnected systems.

When system complexity surpasses the limits of human cognitive processing, the so-called “principle of least privilege” easily becomes an empty slogan. In this sprawling digital construction site, the core structure consists of exposed rebar, entry points lack security checks, and users are implicitly treated as sole parties responsible for bearing all risks.

If we cannot even gain certainty about something as basic as “who can view my schedule” through a clearly defined boundary, then every time we click “authorize” on screen, are we truly embracing the future of efficiency—or simply adding one last loose brick to a collapsing digital Tower of Babel?

We dedicated to serving clients with professional DingTalk solutions. If you'd like to learn more about DingTalk platform applications, feel free to contact our online customer service or email at This email address is being protected from spambots. You need JavaScript enabled to view it.. With a skilled development and operations team and extensive market experience, we’re ready to deliver expert DingTalk services and solutions tailored to your needs!

Using DingTalk: Before & After

Before

  • × Team Chaos: Team members are all busy with their own tasks, standards are inconsistent, and the more communication there is, the more chaotic things become, leading to decreased motivation.
  • × Info Silos: Important information is scattered across WhatsApp/group chats, emails, Excel spreadsheets, and numerous apps, often resulting in lost, missed, or misdirected messages.
  • × Manual Workflow: Tasks are still handled manually: approvals, scheduling, repair requests, store visits, and reports are all slow, hindering frontline responsiveness.
  • × Admin Burden: Clocking in, leave requests, overtime, and payroll are handled in different systems or calculated using spreadsheets, leading to time-consuming statistics and errors.

After

  • Unified Platform: By using a unified platform to bring people and tasks together, communication flows smoothly, collaboration improves, and turnover rates are more easily reduced.
  • Official Channel: Information has an "official channel": whoever is entitled to see it can see it, it can be tracked and reviewed, and there's no fear of messages being skipped.
  • Digital Agility: Processes run online: approvals are faster, tasks are clearer, and store/on-site feedback is more timely, directly improving overall efficiency.
  • Automated HR: Clocking in, leave requests, and overtime are automatically summarized, and attendance reports can be exported with one click for easy payroll calculation.

Operate smarter, spend less

Streamline ops, reduce costs, and keep HQ and frontline in sync—all in one platform.

9.5x

Operational efficiency

72%

Cost savings

35%

Faster team syncs

Want to a Free Trial? Please book our Demo meeting with our AI specilist as below link:
https://www.dingtalk-global.com/contact

WhatsApp