Skip to main content

tauri-security

Guidance for Tauri v2 capabilities, scope configuration, and ACL-based permission control.

跳到安装

来源信息

仓库
full-stack-skills/tauri-skills
最近来源活动
2026年9月11日 13:43
检测到的 SKILL.md 语言
中文
星标
11
分支
1

安装方式

默认使用会先检查来源的 Prompt;你也可以切换为直接命令,或下载本地副本。

检查来源文件

决定是否安装前,请先阅读 SKILL.md,以及 SkillsMP 当前展示的配套文件。

文件资源管理器
3 个文件

正在显示 SKILL.md

SKILL.md
来源说明 · 只读预览
name
tauri-security
description
Guidance for Tauri v2 capabilities, scope configuration, and ACL-based permission control.
license
Apache-2.0
## When to use this skill **ALWAYS use this skill when the user mentions:** - Capability/Scope design or ACL permission control / 能力、Scope、ACL 权限控制 - Building capabilities/default.json / 生成或校验 capabilities/default.json - Tightening plugin access in production / 生产环境权限收敛 **Trigger phrases include:** - "capabilities", "scope", "acl", "permissions file" - "权限配置", "能力文件", "Scope 配置", "ACL" ## How to use this skill 1. Translate features into plugin capabilities / 业务功能映射为插件能力 2. Define scoped access rules per capability / 为能力定义 Scope 规则 3. Generate and validate capabilities/default.json / 生成并校验能力文件 4. Verify runtime behavior matches minimum-privilege policy / 验证最小权限运行效果 ## Outputs - Capability-to-scope mapping / 能力到 Scope 的映射 - Validated capabilities/default.json / 可直接使用的能力文件 - Permission audit checklist / 权限审计清单 ## Scope - Boundary: Capabilities, scope, and ACL configuration only / 仅限权限配置 - v2 focus: Capabilities & scope are mandatory controls / v2 强制配置 - Out of scope: app feature design or backend auth / 不含功能设计与后端鉴权 ## References - https://v2.tauri.app/llms.txt - https://v2.tauri.app/security/capabilities/ - https://v2.tauri.app/security/scope/ - https://v2.tauri.app/security/acl/ ## Keywords tauri security, capabilities, scope, acl, permissions, 权限配置, 能力文件, 最小权限 ## 常见陷阱 (Gotchas) 1. **版本兼容性**:注意框架版本与依赖库的兼容性,不同版本 API 可能有差异 2. **配置文件格式**:配置文件格式错误是最常见的问题,建议使用编辑器的语法检查 3. **环境变量**:确保所有必要的环境变量已正确设置,敏感信息不要硬编码 4. **依赖冲突**:多版本共存时注意依赖冲突,使用 lock 文件锁定版本 5. **性能陷阱**:大数据量场景下注意性能优化,避免 N+1 查询等常见问题 ## 使用流程 ### Step 1: 环境准备 确保开发环境已安装必要的依赖和工具。 ### Step 2: 配置初始化 根据项目需求进行基础配置。 ### Step 3: 核心功能使用 按照示例代码实现核心功能。 ### Step 4: 测试验证 运行测试确保功能正常。 ### Step 5: 部署上线 完成开发后进行部署和监控。
在 GitHub 查看