no one knows how their bot detection works but using a client is far riskier than a 3rd party macro tool because bot clients inject scripts (correct me if im wrong) which is far more detectable than using a 3rd party tool as it isn't injected but rather "acts" on the client like a person would do. The only way to detect macroing tools are through patterns and while that is also true for botting clients, i definitely think that using the client itself and not botting on it poses a risk to the account.
Searching the PC for any active macro tools is probably against privacy so that part is most likely bullshit although, still possible