notebooklm

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The notebooklm integration description is coherent and purpose-driven, with a reasonable security posture focused on local credential storage and browser-state handling. Risks are primarily around local data persistence and the potential for session state exposure in a compromised host. Recommend explicit data handling clarifications, encryption or protections for local auth_state and browser_state, explicit user consent for data retention, and dependency pinning/auditing for the run.py wrapper. Overall, classify as BENIGN with MEDIUM security risk due to local data persistence and browser-state exposure.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 06:07 AM
Package URL
pkg:socket/skills-sh/sundial-org%2Fawesome-openclaw-skills%2Fnotebooklm%2F@a5a8a923f63b4d04ce83f24d90129444f2a9b887