tauri

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill outlines an architecture for Inter-Process Communication (IPC) where a web frontend sends data to a Rust backend. This design inherently possesses an indirect prompt injection surface if the data received by the backend is not validated before being used in sensitive operations.
  • Ingestion points: Path strings and other arguments passed from the frontend to Rust commands like list_directory in lib.rs.
  • Boundary markers: The provided code snippets do not include explicit input sanitization logic, though the skill provides comprehensive guidance on using Tauri's capability system to define security boundaries.
  • Capability inventory: The skill identifies capabilities for filesystem interaction (read/write), shell command execution via sidecars, and network communication via the updater and official plugins.
  • Sanitization: While not shown in the Rust snippets, the skill demonstrates how to use tauri.conf.json and capability definitions (e.g., $APPDATA/** scopes) to restrict the backend's operational range and prevent unauthorized access.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 06:04 PM
Security Audit — agent-trust-hub — tauri