tauri
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill outlines an architecture for Inter-Process Communication (IPC) where a web frontend sends data to a Rust backend. This design inherently possesses an indirect prompt injection surface if the data received by the backend is not validated before being used in sensitive operations.
- Ingestion points: Path strings and other arguments passed from the frontend to Rust commands like
list_directoryinlib.rs. - Boundary markers: The provided code snippets do not include explicit input sanitization logic, though the skill provides comprehensive guidance on using Tauri's capability system to define security boundaries.
- Capability inventory: The skill identifies capabilities for filesystem interaction (read/write), shell command execution via sidecars, and network communication via the updater and official plugins.
- Sanitization: While not shown in the Rust snippets, the skill demonstrates how to use
tauri.conf.jsonand capability definitions (e.g.,$APPDATA/**scopes) to restrict the backend's operational range and prevent unauthorized access.
Audit Metadata