akiflow-toolkit — scrapes your Akiflow session out of Chrome's credential store
A third-party Akiflow tool decrypts Chrome's cookies/IndexedDB to lift your Akiflow token instead of using OAuth. First-party use only — no exfiltration — but a risky technique.
akiflow-toolkit is a third-party, open-source MCP/CLI tool for the Akiflow productivity app (repo github.com/kty1965/akiflow-toolkit, binary af). To talk to Akiflow on the user's behalf it uses a ChromeCookieReader plus Chrome's IndexedDB/leveldb stores to decrypt and lift the user's existing Akiflow JWT / refresh token straight out of the browser.
Crucially, that token is then used only against Akiflow's own first-party endpoints (api.akiflow.com, web.akiflow.com/oauth/refresh, /auth/login). We found no third-party exfiltration and no remote operator — so this is a Risky tool, not a credential stealer.
Decrypting the browser's credential store is an invasive way to obtain a token. A proper integration uses an OAuth flow where the user explicitly grants access; reading cookies/IndexedDB instead means a third-party tool is handling your decrypted session secret directly.
The capability is also broad: the same ChromeCookieReader machinery can read any site's cookies, so a future version (or a compromise of this package) could repoint it. The risk is to the tool's own users — nothing here steals data today, but the technique is one worth being aware of before installing.
ChromeCookieReader + Chrome IndexedDB/leveldb → decrypts and lifts the Akiflow JWT/refresh tokenapi.akiflow.com, web.akiflow.com/oauth/refresh, /auth/logingithub.com/kty1965/akiflow-toolkitExplicitly not malware: open source, first-party-only network, no exfiltration and no remote operator (contrast CLR-2026-3064). Catalogued as a Risky tool so users understand the browser-cookie-scraping technique; excluded from the OSV outputs by design.