Obsidian MCP

Official MCP

Interact with Obsidian vault via REST API for note management, search, and editing

vcommit-reinges-2026-03-01

快速安装

smcp run official/obsidian-mcp@commit-reinges-2026-03-01

使用安全运行 mcp hub client mcp-hub 的安全 MCP 运行器

1

Static Verified

Level 1

Static analysis passed. MCP-Scan basic analysis completed with score >= 60.

MSSS: Level 0 (Not Compliant)

12
Findings
1
Critical
11
High
70/100
Global Security Score
C
70 /100 Grade C

Requires Security Review

Security issues detected. A thorough review is recommended before deployment.

12 findings
1 critical
11 high

Vulnerability Summary

1
Critical
11
High
0
Medium
0
Low
0
Info

12 total findings detected

Critical
1
High
11

Score Breakdown

Security (50% weight) 40
Supply Chain (30% weight) 100
Maturity (20% weight) 100
Global Score (weighted) 70

OWASP MCP Top 10 View full details →

MCP01
Token & Secrets
Mitigated
MCP02
Privilege Escalation
Mitigated
MCP03
Tool Poisoning
Mitigated
MCP04
Supply Chain
Mitigated
MCP05
Cmd Injection
At Risk
MCP06
Intent Subversion
Mitigated
MCP07
Auth/AuthZ
Mitigated
MCP08
Audit & Telemetry
Mitigated
MCP09
Shadow Servers
At Risk
MCP10
Context Injection
Mitigated

MSSS Certification Level

MCP Server Security Standard (MSSS) — 用于评估MCP服务器安全性的标准化框架。 了解更多

20 Not Compliant
0 Level 0

安全控制项

Other Controls

24/26 passed

No SQL Injection

Control failed: 1 findings found, score 64.0

CRITICAL FAIL

No Hidden Network Channels

Control failed: 11 findings found, score 50.0

HIGH FAIL
Code Quality
PASS
Error Handling
PASS
Input Validation
PASS
Logging
PASS
No Critical Vulnerabilities
PASS
No High Vulnerabilities
PASS
No Secrets in Code
PASS
No Command Injection
PASS
No Path Traversal
PASS
No Insecure Deserialization
PASS
No XSS Vulnerabilities
PASS
Secure Cryptography
PASS
No Hardcoded Credentials
PASS
No Prompt Injection
PASS
No Tool Poisoning
PASS
No Remote Code Execution
PASS
No SSRF or Data Exfiltration
PASS
No Privilege Escalation
PASS
No Cross-Tool Data Leakage
PASS
Compatible License
PASS
No Copyleft License
PASS
No Deprecated Dependencies
PASS
Pinned Dependencies
PASS
Known Supply Chain
PASS