When you add a third-party app, the authorization page shows a message the third-party app may access the following information:
Member information: UserID, member name, gender, whether members have enabled the app, etc.
Department information: Department name, etc.
Company name, profile photo, verification status, entity name (only for verified companies), company type, industry, staff size (empty if not set), etc.
(1) Admins have installed the Contacts app of the third-party service provider.
(2) The third-party customer service and company members are friends in WeChat, and members’ mobile number and email are displayed in “External Info”.
(3) Admins have added an app with the permission to obtain mobile number/email, and company members have allowed the third-party service provider to obtain sensitive information when entering the app. (The third-party app’s permissions to access sensitive information, such as mobile number/email have been revoked. The APIs for third-party apps to access mobile number/email are obsolete.)