notion

Warn

Audited by Socket on Sep 10, 2026

1 alert found:

Anomaly
AnomalyLOW
README.md

The fragment is documentation for a Notion CLI and does not itself demonstrate malware. The main security concern is the unverified curl-to-shell installation command, which can execute arbitrary remote code and should be replaced with a downloaded, reviewed, version-pinned installer validated by checksum or signature. CLI access to Notion data and destructive operations should also be treated as privileged. No direct evidence of malicious behavior is present in the supplied text.

Confidence: 98%Severity: 55%
Audit Metadata
Analyzed At
Sep 10, 2026, 01:00 AM
Package URL
pkg:socket/skills-sh/lora-sys%2Fskills%2Fnotion%2F@f2bef8b05ae71657562f4ea2ab0e3c7bb068683e2415dd30b84b5dc661d5859d
Security Audit — socket — notion