obsidian

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Obsidian skill presents a coherent, purpose-aligned footprint: it performs local vault operations via MCP with optional Obsidian CLI/app context and a well-defined, non-destructive Git-based backup/sync pathway. There are no evident risky external data flows or credential harvesting behaviors. The primary risks are standard operational concerns (frontmatter patching edge cases, git preflight requirements) which are documented. Overall, the skill is BENIGN with moderate operational risk (due to local file handling and git interactions) and no malware or exfiltration indicators.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 04:06 AM
Package URL
pkg:socket/skills-sh/bitbonsai%2Fmcp-obsidian%2Fobsidian%2F@b28597aada4b47968ae74506dac50f760ffe3931