notebooklm-studio
Warn
Audited by Socket on May 19, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, but it relies on an unofficial third-party NotebookLM CLI that mediates Google authentication via browser/session cookies and uploads user content through non-official client code. This is not confirmed malware, yet the combination of third-party credential handling, Bash access, and processing of untrusted external content creates medium-to-high security risk.
Confidence: 89%Severity: 74%
Audit Metadata