notion-cli

Fail

Audited by Snyk on Aug 19, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.70). These URLs include an unknown/third‑party package registry (https://clawhub.ai) and a GitHub repo/user (https://github.com/litencatt/notion-cli) that do not match the npm package scope used in the docs, indicating a potential supply‑chain / non‑official distribution risk.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). SKILL.md / README.md describe a runtime workflow that can ingest outsider-authored free text from user-provided search queries/filters and page IDs (e.g., “notion-cli search --query ...”, “notion-cli db query ... -a '{...}'”, “notion-cli page retrieve ... -r”), which can then lead the tool to read Notion page/block text returned by those queries.

Issues (2)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 19, 2026, 07:46 PM
Issues
2
Security Audit — snyk — notion-cli