second-brain-privacy skillA
second-brain-privacy is agent-read markdown (skill) from undefined-ui/second-brain-os: Audit the vault for material that should not be in it: credentials, other people's private information, confidential work, and anything the user would not want synced or backed up. Use this skill when the user asks about privacy, is about to share or sync the vault, has just imported chat history or meeting notes, or asks what is sensitive in their notes. Do NOT use to delete anything on your own, or as a substitute for the publishing check..
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
What the file says
# Audit privacy A mature vault is one of the highest-signal documents about a person that exists, and it lives in a folder that gets synced, committed, backed up and occasionally shared. Every copy is another place the content exists. ## Core rule Find and report. Delete nothing without an explicit instruction naming what to remove. ## Workflow 1. **Scan for credentials:** API keys, tokens, passwords, connection strings. Check `.obsidian/plugins/` too, where plugin data lives. 2. **Find other people's information:** meeting transcripts, personal messages, anything told in confidence, health or financial detail about someone else. 3. **Find confidential work:** material under NDA or employer restriction. 4. **Check the git remote.** Private material in a public repo is the most expensive version of this problem. 5. **Report by severity,** with the specific file and why. ## Output format ``` Critical: <credentials, must be removed and rotated> High: <other people's private information> Review: <material the user should decide about> Repo visibility: <public | private> - <verdict> ``` ## Calibration …
Read the whole file at its exact version.
How to install
mdr add undefined-ui/second-brain-os/second-brain-privacy@git:20260908.1615b29mdr add undefined-ui/second-brain-os/second-brain-privacy@sha256:510f811735df799fPin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_g5a3m2aj6c2nriup)
1 badge views in 30 days
Versions
Audit of the latest version
- pass: Frontmatter block present
- pass: Frontmatter declares a name
- pass: Frontmatter declares a description
- pass: Size between 200 bytes and 200 KB (1907 bytes)
- pass: No zero-width or bidi control characters
- pass: No instruction hidden inside an HTML comment
- pass: No link to an exfiltration or paste host
- pass: No credential-shaped string
- pass: No instruction to send local credentials anywhere
- pass: No text hidden with inline styles
- pass: No prompt-injection phrasing
- pass: No curl or wget piped into a shell
- pass: No recursive delete of root, home or parent
- pass: No instruction to read or print local credentials
- pass: No base64 blob over 200 characters
- pass: No link to a raw IP address
- pass: No script tag
Source
undefined-ui/second-brain-os · 296 stars · license MIT · pushed 2026-09-23 · branch main
API
GET https://markdownregistry.com/api/v1/artifacts/art_g5a3m2aj6c2nriup GET https://markdownregistry.com/api/v1/resolve?ref=undefined-ui/second-brain-os/second-brain-privacy GET https://markdownregistry.com/api/v1/blob/510f811735df799f63cbf6898629905df9f0fdd68321be8f1a982a48689a0714
Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.