obsidian-cli

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Obsidian CLI skill presents a coherent set of capabilities aligned with its stated purpose: interacting with Obsidian vaults, performing vault operations, and supporting plugin/theme development. The security footprint is mainly local in scope (disk I/O, app context execution) with minor potential for local data leakage via clipboard or logs. There are no evident remote data exfiltration patterns or unverifiable binaries. Overall, the skill is benign with manageable local risk; ensure sandboxing for eval; monitor for unintended disclosure through clipboard/log outputs.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 06:54 AM
Package URL
pkg:socket/skills-sh/jst-well-dan%2Fskill-box%2Fobsidian-cli%2F@96254a554e480359de7b685571876f2e7f9ba57d