notion-market-publish-skill

Warn

Audited by Socket on Mar 10, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/get_cookies_cdp.py

This script is a credential-extraction utility for Notion: it fetches browser cookies from a Chrome instance via the DevTools Protocol and writes them in plaintext to local files. The code does not itself exfiltrate data over the network, but it performs sensitive actions (cookie harvesting) and auto-installs dependencies at runtime, which increases supply-chain risk. If run by a user (especially without understanding), it can be abused to capture session cookies and enable account takeover. Use caution: only run in trusted environments and avoid storing cookies in plain text. Consider requiring explicit user consent and protecting stored credentials.

Confidence: 90%Severity: 60%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:51 AM
Package URL
pkg:socket/skills-sh/ewingyangs%2Fnotion-skills%2Fnotion-market-publish-skill%2F@9dcc25b82c44b2dc62f3f1c0dde5adbb22a1dd4e