cninfo-to-notebooklm

Warn

Audited by Socket on May 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The overall workflow matches the stated purpose, but trust is weakened by an unreviewed `install.sh` and reliance on the unofficial `notebooklm-py` CLI for authentication and uploads. This looks more like a risky third-party integration than clear malware: purpose-capability alignment is good, but install trust and credential handling are only partially verifiable.

Confidence: 84%Severity: 63%
Audit Metadata
Analyzed At
May 2, 2026, 05:08 PM
Package URL
pkg:socket/skills-sh/jarodise%2FCNinfo2Notebookllm%2Fcninfo-to-notebooklm%2F@7e7b46b3943d3f56fadc8ac568a74e604ee0c048