notion-cli
Fail
Audited by Snyk on Aug 19, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.70). These URLs include an unknown/third‑party package registry (https://clawhub.ai) and a GitHub repo/user (https://github.com/litencatt/notion-cli) that do not match the npm package scope used in the docs, indicating a potential supply‑chain / non‑official distribution risk.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md / README.md describe a runtime workflow that can ingest outsider-authored free text from user-provided search queries/filters and page IDs (e.g., “notion-cli search --query ...”, “notion-cli db query ... -a '{...}'”, “notion-cli page retrieve ... -r”), which can then lead the tool to read Notion page/block text returned by those queries.
Issues (2)
E005
CRITICALSuspicious download URL detected in skill instructions.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata