notion

Warn

Audited by Socket on May 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is mostly coherent with its stated Notion purpose and uses an official vendor CLI from npm, so it is not overtly malicious. The main risk is architectural: all Notion authentication and API traffic are mediated by Membrane, creating third-party credential and data exposure beyond a direct Notion integration; combined with an unpinned global CLI install, this makes the skill suspicious but not malicious.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
May 1, 2026, 09:13 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fnotion%2F@bbc1597b15e2e18cfbdd31ed44de68c25c44a68e