obsidian-app-css
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [SAFE]: The skill instructions focus on standard CSS development workflows within the Obsidian ecosystem, such as theme auditing and snippet organization.
- [INDIRECT_PROMPT_INJECTION]: The skill involves reading local vault files including appearance.json and CSS files which represent a potential indirect injection surface. However, the skill does not grant the agent capabilities to execute arbitrary code or perform network operations, and the data access is necessary for the stated purpose.
- [DATA_EXFILTRATION]: Instructions to read vault configuration files are scoped to the intended functionality of managing CSS themes and snippets. While this involves data access, no exfiltration patterns or unauthorized network operations were detected.
Audit Metadata