notion

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Notion skill aligns with its stated purpose of interfacing with the Notion API to manage pages, databases (data sources), and blocks. The main security considerations are credential handling (plaintext storage of the API key) and potential logging of keys in command history or logs. There are no evident supply-chain or autonomous action risks. Overall, the footprint is Benign with notable but manageable credential exposure risk; treat as MEDIUM-low risk pending mitigations (e.g., env vars or restricted file permissions, avoiding echoing keys in logs).

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 09:12 PM
Package URL
pkg:socket/skills-sh/ComposioHQ%2Fopenclaw-composio%2Fnotion%2F@fcc9a65fc2add2546b96c687b606fc8cb117680a