notebooklm
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core behavior matches a NotebookLM automation skill and data mostly flows to official Google endpoints, but the implementation relies on persistent browser auth plus a third-party stealth automation package (Patchright) instead of an official scoped API flow. That makes the skill coherent in purpose yet medium-risk in execution trust and credential/session handling.
Confidence: 85%Severity: 58%
Audit Metadata