notion-connector

Pass

Audited by Gen Agent Trust Hub on Aug 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions and provided code snippets follow security best practices. Specifically, the skill explicitly warns against hardcoding secrets, recommending the use of environment variables and referring to a secure-coding skill for token management.
  • [SAFE]: The verify.sh script is a local utility designed to help developers audit their own code for common Notion-specific bugs and security risks. It performs read-only static analysis and does not execute remote code or perform network operations.
  • [SAFE]: All external references, such as the @notionhq/client Node.js package and the api.notion.com domain, point to well-known and trusted services associated with the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 27, 2026, 08:57 AM
Security Audit — agent-trust-hub — notion-connector