notebooklm-internal
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s main purpose is coherent, but this internal fork materially expands a query tool into a headless write-capable automation pipeline that can act on a user’s NotebookLM account without interaction. The largest risks are autonomous external actions, persistent browser-session credentials, and ingestion of untrusted X/YouTube content; there is no clear evidence of credential theft or malicious exfiltration in the provided fragment.
Confidence: 81%Severity: 72%
Audit Metadata