← Index

io.github.dewtech-technologies/obsidian-mcp-secure

io.github.dewtech-technologies/obsidian-mcp-secure·v1.0.4·Monitoring & Logs

Secure MCP server for Obsidian with OWASP Top 10 controls and full audit logging.

Trust verdict · v1 advisory · method
NOT YET SCREENEDno verdict on file

Verdict not yet evaluated for this tool. The semantic screen takes adversarial cases first; coverage rolls out as the corpus expands (15/150 labels to graduation). The deterministic conformance probe is built but has not yet run on the public corpus, so a recorded verdict here is REVIEW or UNVERIFIED, never a clearing ALLOW. Until a verdict is recorded, an agent should treat this tool as not-yet-cleared and fall back to its own checks. Method: the eval, four-state verdict, honest limits.

Own this server? Screen its description →

Environment variables
OBSIDIAN_API_KEY
requiredsecret

API Key generated by Obsidian's Local REST API plugin (Settings -> Local REST API -> API Key)

OBSIDIAN_HOST

Host of the Local REST API (default: http://127.0.0.1)

OBSIDIAN_PORT

Port of the Local REST API (default: 27123)

LOG_DIR

Directory for audit logs (default: ./logs)

MCP quality score · maturity, not trust · methodology
freshness
23
completeness
10
installability
25
documentation
15
stability
10
Alternatives in Monitoring & Logs