notebooklm-studio

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s behavior is broadly aligned with its stated NotebookLM-automation purpose, but its core trust boundary is weak because it relies on an unofficial third-party CLI that uses undocumented Google endpoints and receives authenticated access to user NotebookLM data. This is not clearly malicious, but it is a medium-risk skill due to credential forwarding and data flow through non-official tooling.

Confidence: 83%Severity: 64%
Audit Metadata
Analyzed At
May 17, 2026, 11:52 AM
Package URL
pkg:socket/skills-sh/Toolsai%2Fnotebooklm-studio-Skill%2Fnotebooklm-studio%2F@5f342679a0ad15676575df6a1d85c0fd9a6d38fc
Security Audit — socket — notebooklm-studio