obsidian-canvas

Pass

Audited by Gen Agent Trust Hub on Apr 16, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructions are limited to structural guidelines for generating Obsidian Canvas JSON files. It does not include any commands to execute external scripts or perform network operations.- [SAFE]: No sensitive data access patterns, such as reading credentials or environment variables, were found. The skill operates exclusively on user-specified files within an Obsidian vault using standard file management tools.- [SAFE]: No obfuscation, prompt injection, or remote code execution vectors were identified in the skill documentation or examples.- [SAFE]: The tool configuration (allowed-tools) is restricted to local file system operations (Read, Write, Edit, Glob, Grep) which is appropriate for its stated purpose of managing note-taking files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 16, 2026, 02:49 PM