obsidian-clipper-template-creator

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from external websites to analyze their structure for template creation, posing a risk of indirect prompt injection.
  • Ingestion points: Content is fetched from user-provided URLs using WebFetch or DOM snapshots, as detailed in references/analysis-workflow.md.
  • Boundary markers: The instructions lack specific boundary markers or instructions to ignore embedded commands within the fetched HTML.
  • Capability inventory: The skill is intended to generate JSON code blocks for the user to copy; it does not perform automated file system writes or code execution based on the input.
  • Sanitization: The process does not include sanitization of the external data before the agent processes it to identify selectors and schema types.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 07:19 AM
Security Audit — agent-trust-hub — obsidian-clipper-template-creator