tauri-app-shell

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns or security vulnerabilities were detected in the skill files.
  • [COMMAND_EXECUTION]: The skill provides documentation and templates for the Tauri Shell plugin, emphasizing security controls like allowlists and regex for command execution.
  • [PROMPT_INJECTION]: The skill documents an attack surface where external input could influence shell commands. It mitigates this risk by instructing the user to implement strict validation and regex constraints. 1. Ingestion points: templates/basic.md contains placeholders for command and argument configuration. 2. Boundary markers: Not explicitly in templates; the skill documentation provides the necessary safety context. 3. Capability inventory: Shell execution and URI opening permissions in templates/capabilities.json. 4. Sanitization: Skill explicitly instructs users to apply strict allowlist or regex constraints to command arguments.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 10:14 AM