obsidian-clipper-template-creator
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from external websites to analyze their structure for template creation, posing a risk of indirect prompt injection.
- Ingestion points: Content is fetched from user-provided URLs using WebFetch or DOM snapshots, as detailed in references/analysis-workflow.md.
- Boundary markers: The instructions lack specific boundary markers or instructions to ignore embedded commands within the fetched HTML.
- Capability inventory: The skill is intended to generate JSON code blocks for the user to copy; it does not perform automated file system writes or code execution based on the input.
- Sanitization: The process does not include sanitization of the external data before the agent processes it to identify selectors and schema types.
Audit Metadata