obsidian-plugin-review

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: Orchestrates the review pass by executing several local CLI tools including bash, eslint, python3, jq, and grep. These are used to discover source files, perform linting, and process the results into a final report.
  • [EXTERNAL_DOWNLOADS]: Performs network requests to the GitHub API (api.github.com) to check for artifact attestations on published plugin releases. This interaction is limited to metadata retrieval from a well-known service to verify build provenance.
  • [SAFE]: The skill follows secure development practices by using pinned dependencies from official registries and providing full source code for its auditing scripts. It serves a clear security-enhancing purpose for the Obsidian developer community.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 03:45 AM
Security Audit — agent-trust-hub — obsidian-plugin-review