Skip to content

Secret Placeholders

Embed password-manager secrets in notes as placeholders so the .md never contains the actual credential. Supports OpenBao/Vault, 1Password Connect, and Bitwarden/Vaultwarden. - This plugin has not been manually reviewed by Obsidian staff.

The above warnings are based on limited information and might not always be accurate.

Data

IDsecret-placeholders
AuthorLiam
Minimum Obsidian Version1.7.2
Official Release Date2026-05-22
Last update2026-07-07

Last Refresh

Obsidian Stats last refreshed the data behind this page on Jul 13, 2026.

Community plugin snapshotJul 13, 2026
Repository clonelast successful checkout Jul 7, 2026
Release acquisitionrelease metadata checked Jul 7, 2026; latest main.js acquired

Quick Links

Changes

DateChanged PropertyOld ValueNew Value
2026-05-22Plugin Added
2026-06-03authorlai2301Liam
2026-06-15descriptionThis plugin has not been manually reviewed by Obsidian staff. Embed password-manager secrets in notes as placeholders so the .md never contains the actual credential. Supports OpenBao/Vault, 1Password Connect, and Bitwarden/Vaultwarden.Embed password-manager secrets in notes as placeholders so the .md never contains the actual credential. Supports OpenBao/Vault, 1Password Connect, and Bitwarden/Vaultwarden. - This plugin has not been manually reviewed by Obsidian staff.
2026-07-06Plugin Removed
2026-07-07Plugin Re-Added

Repository Data

LicenseMIT in package.json
MIT in LICENSE file
Package Managernpm
Uses TypescriptYes
Installed Bundlersesbuild
Installed Testing FrameworksNone found
Has Test FilesNo
Latest Release main.js Size376 KB
Detected ES VersionES2020
Probably MinifiedYes
main.js API Findings12 disclosures
Uses BRAT beta releasesNo
Dependencieshash-wasm
Dev Dependencies@codemirror/state, @codemirror/view, @types/node, esbuild, eslint, eslint-plugin-obsidianmd, obsidian, tslib, typescript, typescript-eslint

main.js API Findings

These conservative findings come from static analysis of the latest release main.js. The table includes warnings and high-confidence informational findings; lower-confidence informational findings are omitted to reduce false positives. Warnings indicate usage of potentially risky APIs, but such APIs can be used safely if handled with care.

DisclosureDetected From
Clipboard AccessReads or writes clipboard data
Cors Free Network AccessUses Obsidian request APIs
Editor BehaviorRegisters editor extensions
Embedded Base64 BlobIncludes large embedded base64 blobs
Full Vault AccessEnumerates vault files
Global Handlers Or TimersRegisters events, DOM handlers, or intervals
Markdown ProcessingRegisters markdown processors or renderers
Network AccessUses Obsidian request APIs
Note Content AccessReads vault files
Private Network AccessReferences localhost or private-network addresses
Webassembly UsageUses WebAssembly APIs
Workspace LayoutRegisters or manipulates workspace views and panes
FindingTypeConfidenceEvidence
References localhost or private-network addressesWarningMedium127.0.0.1 (2), localhost (2)
Reads or writes clipboard dataInfoHighnavigator.clipboard.writeText (4)
Uses persistent browser storageInfoHighcaches (4), localStorage (1)
Uses WebAssembly APIsInfoHighWebAssembly (2)
Includes large embedded base64 blobsInfoHighbase64 blob (22)
Registers editor extensionsInfoHighthis.registerEditorExtension (1)
Registers markdown processors or renderersInfoHighthis.registerMarkdownPostProcessor (1)
Registers events, DOM handlers, or intervalsInfoHighthis.registerEvent (4)
References URLs or constructs URL objectsInfoHighhttp:// (2), https:// (9), URL (1), URLSearchParams (3)
Uses Obsidian request APIsInfoHighobsidian.requestUrl (8)
Persists plugin settings or dataInfoHighthis.loadData (1), this.saveData (1)
Registers plugin settings UIInfoHighthis.addSettingTab (1), Setting (37), obsidian.Setting (37)
Registers commands, ribbon icons, or status bar itemsInfoHighthis.addCommand (1), this.addRibbonIcon (1)
Accesses Obsidian vault APIsInfoHighapp.vault (6)
Enumerates vault filesInfoHighapp.vault.getMarkdownFiles (1)
Reads vault filesInfoHighapp.vault.cachedRead (1)
Accesses Obsidian workspace APIsInfoHighapp.workspace (1)
Registers or manipulates workspace views and panesInfoHighregisterView (1)

The above data may not be accurate and contain errors. For more information refer to the page about data collection.

Lines of Code

The plugin has a total of 6292 lines of code. The following chart shows the lines of code split by programming language.

Downloads

The following chart shows the total number of downloads of the plugin over time. The second chart shows the delta of downloads per week, which is the number of new downloads per week. New version releases are marked with vertical lines.

Version History

VersionRelease DateNote
0.5.52026-05-21Released while not listed
0.6.02026-05-22None
0.6.12026-06-03None
0.7.02026-07-05None
0.7.12026-07-07None
0.7.22026-07-07None

Blacklisted versions are versions that are known to cause major issues or contain security concerns and have thus been blacklisted by the Obsidian team. Obsidian will disable plugins on startup whose installed version is blacklisted. Released while not listed versions happened outside the period where the plugin was present in the community plugin list and are excluded from aggregate release statistics.