obsidian42-brat

Pass

Audited by Gen Agent Trust Hub on Apr 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the download of Obsidian plugins and themes from GitHub repositories. These downloads are performed from a well-known service and are initiated by explicit user intent to install specific beta software for testing.\n- [REMOTE_CODE_EXECUTION]: The skill is designed to manage the installation and execution of third-party Obsidian plugins from remote GitHub sources. Although this involves executing remote code, it is the primary stated purpose of the BRAT (Beta Reviewer's Auto-update Tool) utility and occurs within the established context of the Obsidian plugin ecosystem.\n- [SAFE]: No malicious patterns such as prompt injection, unauthorized data access, credential harvesting, or persistence mechanisms were found. The skill instructions align with the documented behavior of the tool it manages.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 16, 2026, 02:49 PM
Security Audit — agent-trust-hub — obsidian42-brat