Skip to content

This release fixes issues for SREs watching stability and regressions.

Published 3mo MCP Security & Auth
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

ai automation browser-automation claude google llm
+5 more
mcp model-context-protocol notebooklm research typescript

Affected surfaces

auth

Summary

AI summary

Fixed setup_auth headless calls to return a clear error and improved auth-now.mjs robustness.

Full changelog

Bug Fixes

Block Headless setup_auth

  • setup_auth without show_browser:true now returns a clear error
  • Prevents sessions calling setup_auth headlessly from wiping credentials without being able to restore them

Robust auth-now.mjs Script

  • Added explicit error logging at every save step
  • Fixed URL detection (now matches with or without trailing slash)
  • Kills any existing Chrome processes holding the profile before launching
  • Verifies state file exists on disk after save
  • Keeps browser open 60s after success so you can confirm before opening sessions

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Pantheon-Security/notebooklm-mcp-secure

Get notified when new releases ship.

Sign up free

About Pantheon-Security/notebooklm-mcp-secure

Security-hardened NotebookLM MCP with post-quantum encryption (ML-KEM-768), GDPR/SOC2/CSSF compliance, and 14 security layers. Query Google's Gemini-grounded research from Claude and AI agents.

All releases →

Beta — feedback welcome: [email protected]