Oathe Security Badge

Is 222dotcrypto/article-to-notebooklm safe?

https://github.com/222dotcrypto/article-to-notebooklm

95
SAFE

This skill provides legitimate functionality for loading web articles into Google NotebookLM and generating study materials. The code is clean with no executable components, and monitoring confirmed no actual data exfiltration despite some sensitive file access during audit setup.

Category Scores

Prompt Injection 95/100 · 30%
Data Exfiltration 85/100 · 25%
Code Execution 100/100 · 20%
Clone Behavior 100/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 95/100 · 5%

Findings (1)

LOW Sensitive file access during audit -15

Monitoring detected access to canary files (.env, SSH keys, AWS credentials) during installation process, though this appears to be part of audit system rather than malicious skill behavior