"description":"a grouping and boundary mechanism developers can use to separate windows or plugins functionality from each other at runtime.\n\nIf a window is not matching any capability then it has no access to the IPC layer at all.\n\nThis can be done to create trust groups and reduce impact of vulnerabilities in certain plugins or windows. Windows can be added to a capability by exact name or glob patterns like *, admin-* or main-window.",
"description":"Configure remote URLs that can use the capability permissions.",
"anyOf":[
{
"$ref":"#/definitions/CapabilityRemote"
},
{
"type":"null"
}
]
},
"local":{
"description":"Whether this capability is enabled for local app URLs or not. Defaults to `true`.",
"default":true,
"type":"boolean"
},
"windows":{
"description":"List of windows that uses this capability. Can be a glob pattern.\n\nOn multiwebview windows, prefer [`Self::webviews`] for a fine grained access control.",
"type":"array",
"items":{
"type":"string"
}
},
"webviews":{
"description":"List of webviews that uses this capability. Can be a glob pattern.\n\nThis is only required when using on multiwebview contexts, by default all child webviews of a window that matches [`Self::windows`] are linked.",
"type":"array",
"items":{
"type":"string"
}
},
"permissions":{
"description":"List of permissions attached to this capability. Must include the plugin name as prefix in the form of `${plugin-name}:${permission-name}`.",
"description":"Remote domains this capability refers to using the [URLPattern standard](https://urlpattern.spec.whatwg.org/).\n\n# Examples\n\n- \"https://*.mydomain.dev\": allows subdomains of mydomain.dev - \"https://mydomain.dev/api/*\": allows any subpath of mydomain.dev/api",
"description":"An entry for a permission value in a [`Capability`] can be either a raw permission [`Identifier`] or an object that references a permission and extends its scope.",
"anyOf":[
{
"description":"Reference a permission or permission set by identifier.",
"allOf":[
{
"$ref":"#/definitions/Identifier"
}
]
},
{
"description":"Reference a permission or permission set by identifier and extends its scope.",
"type":"object",
"oneOf":[
{
"type":"object",
"required":[
"identifier"
],
"properties":{
"identifier":{
"oneOf":[
{
"description":"fs:default -> # Tauri `fs` default permissions\n\nThis configuration file defines the default permissions granted\nto the filesystem.\n\n### Granted Permissions\n\nThis default permission set enables all read-related commands and\nallows access to the `$APP` folder and sub directories created in it.\nThe location of the `$APP` folder depends on the operating system,\nwhere the application is run.\n\nIn general the `$APP` folder needs to be manually created\nby the application at runtime, before accessing files or folders\nin it is possible.\n\n### Denied Permissions\n\nThis default permission set prevents access to critical components\nof the Tauri application by default.\nOn Windows the webview data folder access is denied.\n\n",
"type":"string",
"enum":[
"fs:default"
]
},
{
"description":"fs:allow-app-meta -> This allows read access to metadata of the `$APP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-app-meta"
]
},
{
"description":"fs:allow-app-meta-recursive -> This allows read access to metadata of the `$APP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-app-meta-recursive"
]
},
{
"description":"fs:allow-app-read -> This allows non-recursive read access to the `$APP` folder.",
"type":"string",
"enum":[
"fs:allow-app-read"
]
},
{
"description":"fs:allow-app-read-recursive -> This allows full recursive read access to the complete `$APP` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-app-read-recursive"
]
},
{
"description":"fs:allow-app-write -> This allows non-recursive write access to the `$APP` folder.",
"description":"fs:allow-appcache-meta -> This allows read access to metadata of the `$APPCACHE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appcache-meta"
]
},
{
"description":"fs:allow-appcache-meta-recursive -> This allows read access to metadata of the `$APPCACHE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appcache-meta-recursive"
]
},
{
"description":"fs:allow-appcache-read -> This allows non-recursive read access to the `$APPCACHE` folder.",
"type":"string",
"enum":[
"fs:allow-appcache-read"
]
},
{
"description":"fs:allow-appcache-read-recursive -> This allows full recursive read access to the complete `$APPCACHE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appcache-read-recursive"
]
},
{
"description":"fs:allow-appcache-write -> This allows non-recursive write access to the `$APPCACHE` folder.",
"description":"fs:allow-appcache-write-recursive -> This allows full recursive write access to the complete `$APPCACHE` folder, files and subdirectories.",
"description":"fs:allow-appconfig-meta -> This allows read access to metadata of the `$APPCONFIG` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appconfig-meta"
]
},
{
"description":"fs:allow-appconfig-meta-recursive -> This allows read access to metadata of the `$APPCONFIG` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appconfig-meta-recursive"
]
},
{
"description":"fs:allow-appconfig-read -> This allows non-recursive read access to the `$APPCONFIG` folder.",
"type":"string",
"enum":[
"fs:allow-appconfig-read"
]
},
{
"description":"fs:allow-appconfig-read-recursive -> This allows full recursive read access to the complete `$APPCONFIG` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appconfig-read-recursive"
]
},
{
"description":"fs:allow-appconfig-write -> This allows non-recursive write access to the `$APPCONFIG` folder.",
"description":"fs:allow-appconfig-write-recursive -> This allows full recursive write access to the complete `$APPCONFIG` folder, files and subdirectories.",
"description":"fs:allow-appdata-meta -> This allows read access to metadata of the `$APPDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appdata-meta"
]
},
{
"description":"fs:allow-appdata-meta-recursive -> This allows read access to metadata of the `$APPDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appdata-meta-recursive"
]
},
{
"description":"fs:allow-appdata-read -> This allows non-recursive read access to the `$APPDATA` folder.",
"type":"string",
"enum":[
"fs:allow-appdata-read"
]
},
{
"description":"fs:allow-appdata-read-recursive -> This allows full recursive read access to the complete `$APPDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appdata-read-recursive"
]
},
{
"description":"fs:allow-appdata-write -> This allows non-recursive write access to the `$APPDATA` folder.",
"description":"fs:allow-appdata-write-recursive -> This allows full recursive write access to the complete `$APPDATA` folder, files and subdirectories.",
"description":"fs:allow-applocaldata-meta -> This allows read access to metadata of the `$APPLOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-applocaldata-meta"
]
},
{
"description":"fs:allow-applocaldata-meta-recursive -> This allows read access to metadata of the `$APPLOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-applocaldata-meta-recursive"
]
},
{
"description":"fs:allow-applocaldata-read -> This allows non-recursive read access to the `$APPLOCALDATA` folder.",
"type":"string",
"enum":[
"fs:allow-applocaldata-read"
]
},
{
"description":"fs:allow-applocaldata-read-recursive -> This allows full recursive read access to the complete `$APPLOCALDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-applocaldata-read-recursive"
]
},
{
"description":"fs:allow-applocaldata-write -> This allows non-recursive write access to the `$APPLOCALDATA` folder.",
"description":"fs:allow-applocaldata-write-recursive -> This allows full recursive write access to the complete `$APPLOCALDATA` folder, files and subdirectories.",
"description":"fs:allow-applog-write-recursive -> This allows full recursive write access to the complete `$APPLOG` folder, files and subdirectories.",
"description":"fs:allow-config-write-recursive -> This allows full recursive write access to the complete `$CONFIG` folder, files and subdirectories.",
"description":"fs:allow-desktop-meta -> This allows read access to metadata of the `$DESKTOP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-desktop-meta"
]
},
{
"description":"fs:allow-desktop-meta-recursive -> This allows read access to metadata of the `$DESKTOP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-desktop-meta-recursive"
]
},
{
"description":"fs:allow-desktop-read -> This allows non-recursive read access to the `$DESKTOP` folder.",
"type":"string",
"enum":[
"fs:allow-desktop-read"
]
},
{
"description":"fs:allow-desktop-read-recursive -> This allows full recursive read access to the complete `$DESKTOP` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-desktop-read-recursive"
]
},
{
"description":"fs:allow-desktop-write -> This allows non-recursive write access to the `$DESKTOP` folder.",
"description":"fs:allow-desktop-write-recursive -> This allows full recursive write access to the complete `$DESKTOP` folder, files and subdirectories.",
"description":"fs:allow-document-meta -> This allows read access to metadata of the `$DOCUMENT` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-document-meta"
]
},
{
"description":"fs:allow-document-meta-recursive -> This allows read access to metadata of the `$DOCUMENT` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-document-meta-recursive"
]
},
{
"description":"fs:allow-document-read -> This allows non-recursive read access to the `$DOCUMENT` folder.",
"type":"string",
"enum":[
"fs:allow-document-read"
]
},
{
"description":"fs:allow-document-read-recursive -> This allows full recursive read access to the complete `$DOCUMENT` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-document-read-recursive"
]
},
{
"description":"fs:allow-document-write -> This allows non-recursive write access to the `$DOCUMENT` folder.",
"description":"fs:allow-document-write-recursive -> This allows full recursive write access to the complete `$DOCUMENT` folder, files and subdirectories.",
"description":"fs:allow-download-meta -> This allows read access to metadata of the `$DOWNLOAD` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-download-meta"
]
},
{
"description":"fs:allow-download-meta-recursive -> This allows read access to metadata of the `$DOWNLOAD` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-download-meta-recursive"
]
},
{
"description":"fs:allow-download-read -> This allows non-recursive read access to the `$DOWNLOAD` folder.",
"type":"string",
"enum":[
"fs:allow-download-read"
]
},
{
"description":"fs:allow-download-read-recursive -> This allows full recursive read access to the complete `$DOWNLOAD` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-download-read-recursive"
]
},
{
"description":"fs:allow-download-write -> This allows non-recursive write access to the `$DOWNLOAD` folder.",
"description":"fs:allow-download-write-recursive -> This allows full recursive write access to the complete `$DOWNLOAD` folder, files and subdirectories.",
"description":"fs:allow-localdata-meta -> This allows read access to metadata of the `$LOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-localdata-meta"
]
},
{
"description":"fs:allow-localdata-meta-recursive -> This allows read access to metadata of the `$LOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-localdata-meta-recursive"
]
},
{
"description":"fs:allow-localdata-read -> This allows non-recursive read access to the `$LOCALDATA` folder.",
"type":"string",
"enum":[
"fs:allow-localdata-read"
]
},
{
"description":"fs:allow-localdata-read-recursive -> This allows full recursive read access to the complete `$LOCALDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-localdata-read-recursive"
]
},
{
"description":"fs:allow-localdata-write -> This allows non-recursive write access to the `$LOCALDATA` folder.",
"description":"fs:allow-localdata-write-recursive -> This allows full recursive write access to the complete `$LOCALDATA` folder, files and subdirectories.",
"description":"fs:allow-picture-meta -> This allows read access to metadata of the `$PICTURE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-picture-meta"
]
},
{
"description":"fs:allow-picture-meta-recursive -> This allows read access to metadata of the `$PICTURE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-picture-meta-recursive"
]
},
{
"description":"fs:allow-picture-read -> This allows non-recursive read access to the `$PICTURE` folder.",
"type":"string",
"enum":[
"fs:allow-picture-read"
]
},
{
"description":"fs:allow-picture-read-recursive -> This allows full recursive read access to the complete `$PICTURE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-picture-read-recursive"
]
},
{
"description":"fs:allow-picture-write -> This allows non-recursive write access to the `$PICTURE` folder.",
"description":"fs:allow-picture-write-recursive -> This allows full recursive write access to the complete `$PICTURE` folder, files and subdirectories.",
"description":"fs:allow-public-write-recursive -> This allows full recursive write access to the complete `$PUBLIC` folder, files and subdirectories.",
"description":"fs:allow-resource-meta -> This allows read access to metadata of the `$RESOURCE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-resource-meta"
]
},
{
"description":"fs:allow-resource-meta-recursive -> This allows read access to metadata of the `$RESOURCE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-resource-meta-recursive"
]
},
{
"description":"fs:allow-resource-read -> This allows non-recursive read access to the `$RESOURCE` folder.",
"type":"string",
"enum":[
"fs:allow-resource-read"
]
},
{
"description":"fs:allow-resource-read-recursive -> This allows full recursive read access to the complete `$RESOURCE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-resource-read-recursive"
]
},
{
"description":"fs:allow-resource-write -> This allows non-recursive write access to the `$RESOURCE` folder.",
"description":"fs:allow-resource-write-recursive -> This allows full recursive write access to the complete `$RESOURCE` folder, files and subdirectories.",
"description":"fs:allow-runtime-meta -> This allows read access to metadata of the `$RUNTIME` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-runtime-meta"
]
},
{
"description":"fs:allow-runtime-meta-recursive -> This allows read access to metadata of the `$RUNTIME` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-runtime-meta-recursive"
]
},
{
"description":"fs:allow-runtime-read -> This allows non-recursive read access to the `$RUNTIME` folder.",
"type":"string",
"enum":[
"fs:allow-runtime-read"
]
},
{
"description":"fs:allow-runtime-read-recursive -> This allows full recursive read access to the complete `$RUNTIME` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-runtime-read-recursive"
]
},
{
"description":"fs:allow-runtime-write -> This allows non-recursive write access to the `$RUNTIME` folder.",
"description":"fs:allow-runtime-write-recursive -> This allows full recursive write access to the complete `$RUNTIME` folder, files and subdirectories.",
"description":"fs:allow-template-meta -> This allows read access to metadata of the `$TEMPLATE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-template-meta"
]
},
{
"description":"fs:allow-template-meta-recursive -> This allows read access to metadata of the `$TEMPLATE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-template-meta-recursive"
]
},
{
"description":"fs:allow-template-read -> This allows non-recursive read access to the `$TEMPLATE` folder.",
"type":"string",
"enum":[
"fs:allow-template-read"
]
},
{
"description":"fs:allow-template-read-recursive -> This allows full recursive read access to the complete `$TEMPLATE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-template-read-recursive"
]
},
{
"description":"fs:allow-template-write -> This allows non-recursive write access to the `$TEMPLATE` folder.",
"description":"fs:allow-template-write-recursive -> This allows full recursive write access to the complete `$TEMPLATE` folder, files and subdirectories.",
"description":"fs:deny-default -> This denies access to dangerous Tauri relevant files and folders by default.",
"type":"string",
"enum":[
"fs:deny-default"
]
},
{
"description":"fs:allow-copy-file -> Enables the copy_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-copy-file"
]
},
{
"description":"fs:allow-create -> Enables the create command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-create"
]
},
{
"description":"fs:allow-exists -> Enables the exists command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-exists"
]
},
{
"description":"fs:allow-fstat -> Enables the fstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-fstat"
]
},
{
"description":"fs:allow-ftruncate -> Enables the ftruncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-ftruncate"
]
},
{
"description":"fs:allow-lstat -> Enables the lstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-lstat"
]
},
{
"description":"fs:allow-mkdir -> Enables the mkdir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-mkdir"
]
},
{
"description":"fs:allow-open -> Enables the open command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-open"
]
},
{
"description":"fs:allow-read -> Enables the read command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read"
]
},
{
"description":"fs:allow-read-dir -> Enables the read_dir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-dir"
]
},
{
"description":"fs:allow-read-file -> Enables the read_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-file"
]
},
{
"description":"fs:allow-read-text-file -> Enables the read_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file"
]
},
{
"description":"fs:allow-read-text-file-lines -> Enables the read_text_file_lines command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file-lines"
]
},
{
"description":"fs:allow-read-text-file-lines-next -> Enables the read_text_file_lines_next command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file-lines-next"
]
},
{
"description":"fs:allow-remove -> Enables the remove command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-remove"
]
},
{
"description":"fs:allow-rename -> Enables the rename command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-rename"
]
},
{
"description":"fs:allow-seek -> Enables the seek command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-seek"
]
},
{
"description":"fs:allow-stat -> Enables the stat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-stat"
]
},
{
"description":"fs:allow-truncate -> Enables the truncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-truncate"
]
},
{
"description":"fs:allow-unwatch -> Enables the unwatch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-unwatch"
]
},
{
"description":"fs:allow-watch -> Enables the watch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-watch"
]
},
{
"description":"fs:allow-write -> Enables the write command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write"
]
},
{
"description":"fs:allow-write-file -> Enables the write_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write-file"
]
},
{
"description":"fs:allow-write-text-file -> Enables the write_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write-text-file"
]
},
{
"description":"fs:deny-copy-file -> Denies the copy_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-copy-file"
]
},
{
"description":"fs:deny-create -> Denies the create command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-create"
]
},
{
"description":"fs:deny-exists -> Denies the exists command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-exists"
]
},
{
"description":"fs:deny-fstat -> Denies the fstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-fstat"
]
},
{
"description":"fs:deny-ftruncate -> Denies the ftruncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-ftruncate"
]
},
{
"description":"fs:deny-lstat -> Denies the lstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-lstat"
]
},
{
"description":"fs:deny-mkdir -> Denies the mkdir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-mkdir"
]
},
{
"description":"fs:deny-open -> Denies the open command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-open"
]
},
{
"description":"fs:deny-read -> Denies the read command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read"
]
},
{
"description":"fs:deny-read-dir -> Denies the read_dir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-dir"
]
},
{
"description":"fs:deny-read-file -> Denies the read_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-file"
]
},
{
"description":"fs:deny-read-text-file -> Denies the read_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file"
]
},
{
"description":"fs:deny-read-text-file-lines -> Denies the read_text_file_lines command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file-lines"
]
},
{
"description":"fs:deny-read-text-file-lines-next -> Denies the read_text_file_lines_next command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file-lines-next"
]
},
{
"description":"fs:deny-remove -> Denies the remove command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-remove"
]
},
{
"description":"fs:deny-rename -> Denies the rename command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-rename"
]
},
{
"description":"fs:deny-seek -> Denies the seek command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-seek"
]
},
{
"description":"fs:deny-stat -> Denies the stat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-stat"
]
},
{
"description":"fs:deny-truncate -> Denies the truncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-truncate"
]
},
{
"description":"fs:deny-unwatch -> Denies the unwatch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-unwatch"
]
},
{
"description":"fs:deny-watch -> Denies the watch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-watch"
]
},
{
"description":"fs:deny-webview-data-linux -> This denies read access to the\n`$APPLOCALDATA` folder on linux as the webview data and configuration values are stored here.\nAllowing access can lead to sensitive information disclosure and should be well considered.",
"type":"string",
"enum":[
"fs:deny-webview-data-linux"
]
},
{
"description":"fs:deny-webview-data-windows -> This denies read access to the\n`$APPLOCALDATA/EBWebView` folder on windows as the webview data and configuration values are stored here.\nAllowing access can lead to sensitive information disclosure and should be well considered.",
"type":"string",
"enum":[
"fs:deny-webview-data-windows"
]
},
{
"description":"fs:deny-write -> Denies the write command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write"
]
},
{
"description":"fs:deny-write-file -> Denies the write_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write-file"
]
},
{
"description":"fs:deny-write-text-file -> Denies the write_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write-text-file"
]
},
{
"description":"fs:read-all -> This enables all read related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-all"
]
},
{
"description":"fs:read-dirs -> This enables directory read and file metadata related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-dirs"
]
},
{
"description":"fs:read-files -> This enables file read related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-files"
]
},
{
"description":"fs:read-meta -> This enables all index or metadata related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-meta"
]
},
{
"description":"fs:scope -> An empty permission you can use to modify the global scope.",
"type":"string",
"enum":[
"fs:scope"
]
},
{
"description":"fs:scope-app -> This scope permits access to all files and list content of top level directories in the `$APP`folder.",
"type":"string",
"enum":[
"fs:scope-app"
]
},
{
"description":"fs:scope-app-index -> This scope permits to list all files and folders in the `$APP`folder.",
"type":"string",
"enum":[
"fs:scope-app-index"
]
},
{
"description":"fs:scope-app-recursive -> This scope recursive access to the complete `$APP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-app-recursive"
]
},
{
"description":"fs:scope-appcache -> This scope permits access to all files and list content of top level directories in the `$APPCACHE`folder.",
"type":"string",
"enum":[
"fs:scope-appcache"
]
},
{
"description":"fs:scope-appcache-index -> This scope permits to list all files and folders in the `$APPCACHE`folder.",
"type":"string",
"enum":[
"fs:scope-appcache-index"
]
},
{
"description":"fs:scope-appcache-recursive -> This scope recursive access to the complete `$APPCACHE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appcache-recursive"
]
},
{
"description":"fs:scope-appconfig -> This scope permits access to all files and list content of top level directories in the `$APPCONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-appconfig"
]
},
{
"description":"fs:scope-appconfig-index -> This scope permits to list all files and folders in the `$APPCONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-appconfig-index"
]
},
{
"description":"fs:scope-appconfig-recursive -> This scope recursive access to the complete `$APPCONFIG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appconfig-recursive"
]
},
{
"description":"fs:scope-appdata -> This scope permits access to all files and list content of top level directories in the `$APPDATA`folder.",
"type":"string",
"enum":[
"fs:scope-appdata"
]
},
{
"description":"fs:scope-appdata-index -> This scope permits to list all files and folders in the `$APPDATA`folder.",
"type":"string",
"enum":[
"fs:scope-appdata-index"
]
},
{
"description":"fs:scope-appdata-recursive -> This scope recursive access to the complete `$APPDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appdata-recursive"
]
},
{
"description":"fs:scope-applocaldata -> This scope permits access to all files and list content of top level directories in the `$APPLOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-applocaldata"
]
},
{
"description":"fs:scope-applocaldata-index -> This scope permits to list all files and folders in the `$APPLOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-applocaldata-index"
]
},
{
"description":"fs:scope-applocaldata-recursive -> This scope recursive access to the complete `$APPLOCALDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-applocaldata-recursive"
]
},
{
"description":"fs:scope-applog -> This scope permits access to all files and list content of top level directories in the `$APPLOG`folder.",
"type":"string",
"enum":[
"fs:scope-applog"
]
},
{
"description":"fs:scope-applog-index -> This scope permits to list all files and folders in the `$APPLOG`folder.",
"type":"string",
"enum":[
"fs:scope-applog-index"
]
},
{
"description":"fs:scope-applog-recursive -> This scope recursive access to the complete `$APPLOG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-applog-recursive"
]
},
{
"description":"fs:scope-audio -> This scope permits access to all files and list content of top level directories in the `$AUDIO`folder.",
"type":"string",
"enum":[
"fs:scope-audio"
]
},
{
"description":"fs:scope-audio-index -> This scope permits to list all files and folders in the `$AUDIO`folder.",
"type":"string",
"enum":[
"fs:scope-audio-index"
]
},
{
"description":"fs:scope-audio-recursive -> This scope recursive access to the complete `$AUDIO` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-audio-recursive"
]
},
{
"description":"fs:scope-cache -> This scope permits access to all files and list content of top level directories in the `$CACHE`folder.",
"type":"string",
"enum":[
"fs:scope-cache"
]
},
{
"description":"fs:scope-cache-index -> This scope permits to list all files and folders in the `$CACHE`folder.",
"type":"string",
"enum":[
"fs:scope-cache-index"
]
},
{
"description":"fs:scope-cache-recursive -> This scope recursive access to the complete `$CACHE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-cache-recursive"
]
},
{
"description":"fs:scope-config -> This scope permits access to all files and list content of top level directories in the `$CONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-config"
]
},
{
"description":"fs:scope-config-index -> This scope permits to list all files and folders in the `$CONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-config-index"
]
},
{
"description":"fs:scope-config-recursive -> This scope recursive access to the complete `$CONFIG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-config-recursive"
]
},
{
"description":"fs:scope-data -> This scope permits access to all files and list content of top level directories in the `$DATA`folder.",
"type":"string",
"enum":[
"fs:scope-data"
]
},
{
"description":"fs:scope-data-index -> This scope permits to list all files and folders in the `$DATA`folder.",
"type":"string",
"enum":[
"fs:scope-data-index"
]
},
{
"description":"fs:scope-data-recursive -> This scope recursive access to the complete `$DATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-data-recursive"
]
},
{
"description":"fs:scope-desktop -> This scope permits access to all files and list content of top level directories in the `$DESKTOP`folder.",
"type":"string",
"enum":[
"fs:scope-desktop"
]
},
{
"description":"fs:scope-desktop-index -> This scope permits to list all files and folders in the `$DESKTOP`folder.",
"type":"string",
"enum":[
"fs:scope-desktop-index"
]
},
{
"description":"fs:scope-desktop-recursive -> This scope recursive access to the complete `$DESKTOP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-desktop-recursive"
]
},
{
"description":"fs:scope-document -> This scope permits access to all files and list content of top level directories in the `$DOCUMENT`folder.",
"type":"string",
"enum":[
"fs:scope-document"
]
},
{
"description":"fs:scope-document-index -> This scope permits to list all files and folders in the `$DOCUMENT`folder.",
"type":"string",
"enum":[
"fs:scope-document-index"
]
},
{
"description":"fs:scope-document-recursive -> This scope recursive access to the complete `$DOCUMENT` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-document-recursive"
]
},
{
"description":"fs:scope-download -> This scope permits access to all files and list content of top level directories in the `$DOWNLOAD`folder.",
"type":"string",
"enum":[
"fs:scope-download"
]
},
{
"description":"fs:scope-download-index -> This scope permits to list all files and folders in the `$DOWNLOAD`folder.",
"type":"string",
"enum":[
"fs:scope-download-index"
]
},
{
"description":"fs:scope-download-recursive -> This scope recursive access to the complete `$DOWNLOAD` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-download-recursive"
]
},
{
"description":"fs:scope-exe -> This scope permits access to all files and list content of top level directories in the `$EXE`folder.",
"type":"string",
"enum":[
"fs:scope-exe"
]
},
{
"description":"fs:scope-exe-index -> This scope permits to list all files and folders in the `$EXE`folder.",
"type":"string",
"enum":[
"fs:scope-exe-index"
]
},
{
"description":"fs:scope-exe-recursive -> This scope recursive access to the complete `$EXE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-exe-recursive"
]
},
{
"description":"fs:scope-font -> This scope permits access to all files and list content of top level directories in the `$FONT`folder.",
"type":"string",
"enum":[
"fs:scope-font"
]
},
{
"description":"fs:scope-font-index -> This scope permits to list all files and folders in the `$FONT`folder.",
"type":"string",
"enum":[
"fs:scope-font-index"
]
},
{
"description":"fs:scope-font-recursive -> This scope recursive access to the complete `$FONT` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-font-recursive"
]
},
{
"description":"fs:scope-home -> This scope permits access to all files and list content of top level directories in the `$HOME`folder.",
"type":"string",
"enum":[
"fs:scope-home"
]
},
{
"description":"fs:scope-home-index -> This scope permits to list all files and folders in the `$HOME`folder.",
"type":"string",
"enum":[
"fs:scope-home-index"
]
},
{
"description":"fs:scope-home-recursive -> This scope recursive access to the complete `$HOME` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-home-recursive"
]
},
{
"description":"fs:scope-localdata -> This scope permits access to all files and list content of top level directories in the `$LOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-localdata"
]
},
{
"description":"fs:scope-localdata-index -> This scope permits to list all files and folders in the `$LOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-localdata-index"
]
},
{
"description":"fs:scope-localdata-recursive -> This scope recursive access to the complete `$LOCALDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-localdata-recursive"
]
},
{
"description":"fs:scope-log -> This scope permits access to all files and list content of top level directories in the `$LOG`folder.",
"type":"string",
"enum":[
"fs:scope-log"
]
},
{
"description":"fs:scope-log-index -> This scope permits to list all files and folders in the `$LOG`folder.",
"type":"string",
"enum":[
"fs:scope-log-index"
]
},
{
"description":"fs:scope-log-recursive -> This scope recursive access to the complete `$LOG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-log-recursive"
]
},
{
"description":"fs:scope-picture -> This scope permits access to all files and list content of top level directories in the `$PICTURE`folder.",
"type":"string",
"enum":[
"fs:scope-picture"
]
},
{
"description":"fs:scope-picture-index -> This scope permits to list all files and folders in the `$PICTURE`folder.",
"type":"string",
"enum":[
"fs:scope-picture-index"
]
},
{
"description":"fs:scope-picture-recursive -> This scope recursive access to the complete `$PICTURE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-picture-recursive"
]
},
{
"description":"fs:scope-public -> This scope permits access to all files and list content of top level directories in the `$PUBLIC`folder.",
"type":"string",
"enum":[
"fs:scope-public"
]
},
{
"description":"fs:scope-public-index -> This scope permits to list all files and folders in the `$PUBLIC`folder.",
"type":"string",
"enum":[
"fs:scope-public-index"
]
},
{
"description":"fs:scope-public-recursive -> This scope recursive access to the complete `$PUBLIC` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-public-recursive"
]
},
{
"description":"fs:scope-resource -> This scope permits access to all files and list content of top level directories in the `$RESOURCE`folder.",
"type":"string",
"enum":[
"fs:scope-resource"
]
},
{
"description":"fs:scope-resource-index -> This scope permits to list all files and folders in the `$RESOURCE`folder.",
"type":"string",
"enum":[
"fs:scope-resource-index"
]
},
{
"description":"fs:scope-resource-recursive -> This scope recursive access to the complete `$RESOURCE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-resource-recursive"
]
},
{
"description":"fs:scope-runtime -> This scope permits access to all files and list content of top level directories in the `$RUNTIME`folder.",
"type":"string",
"enum":[
"fs:scope-runtime"
]
},
{
"description":"fs:scope-runtime-index -> This scope permits to list all files and folders in the `$RUNTIME`folder.",
"type":"string",
"enum":[
"fs:scope-runtime-index"
]
},
{
"description":"fs:scope-runtime-recursive -> This scope recursive access to the complete `$RUNTIME` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-runtime-recursive"
]
},
{
"description":"fs:scope-temp -> This scope permits access to all files and list content of top level directories in the `$TEMP`folder.",
"type":"string",
"enum":[
"fs:scope-temp"
]
},
{
"description":"fs:scope-temp-index -> This scope permits to list all files and folders in the `$TEMP`folder.",
"type":"string",
"enum":[
"fs:scope-temp-index"
]
},
{
"description":"fs:scope-temp-recursive -> This scope recursive access to the complete `$TEMP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-temp-recursive"
]
},
{
"description":"fs:scope-template -> This scope permits access to all files and list content of top level directories in the `$TEMPLATE`folder.",
"type":"string",
"enum":[
"fs:scope-template"
]
},
{
"description":"fs:scope-template-index -> This scope permits to list all files and folders in the `$TEMPLATE`folder.",
"type":"string",
"enum":[
"fs:scope-template-index"
]
},
{
"description":"fs:scope-template-recursive -> This scope recursive access to the complete `$TEMPLATE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-template-recursive"
]
},
{
"description":"fs:scope-video -> This scope permits access to all files and list content of top level directories in the `$VIDEO`folder.",
"type":"string",
"enum":[
"fs:scope-video"
]
},
{
"description":"fs:scope-video-index -> This scope permits to list all files and folders in the `$VIDEO`folder.",
"type":"string",
"enum":[
"fs:scope-video-index"
]
},
{
"description":"fs:scope-video-recursive -> This scope recursive access to the complete `$VIDEO` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-video-recursive"
]
},
{
"description":"fs:write-all -> This enables all write related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:write-all"
]
},
{
"description":"fs:write-files -> This enables all file write related commands without any pre-configured accessible paths.",
"description":"A URL that can be accessed by the webview when using the HTTP APIs. Wildcards can be used following the URL pattern standard.\n\nSee [the URL Pattern spec](https://urlpattern.spec.whatwg.org/) for more information.\n\nExamples:\n\n- \"https://*\" : allows all HTTPS origin on port 443\n\n- \"https://*:*\" : allows all HTTPS origin on any port\n\n- \"https://*.github.com/tauri-apps/tauri\": allows any subdomain of \"github.com\" with the \"tauri-apps/api\" path\n\n- \"https://myapi.service.com/users/*\": allows access to any URLs that begins with \"https://myapi.service.com/users/\"",
"description":"A URL that can be accessed by the webview when using the HTTP APIs. Wildcards can be used following the URL pattern standard.\n\nSee [the URL Pattern spec](https://urlpattern.spec.whatwg.org/) for more information.\n\nExamples:\n\n- \"https://*\" : allows all HTTPS origin on port 443\n\n- \"https://*:*\" : allows all HTTPS origin on any port\n\n- \"https://*.github.com/tauri-apps/tauri\": allows any subdomain of \"github.com\" with the \"tauri-apps/api\" path\n\n- \"https://myapi.service.com/users/*\": allows access to any URLs that begins with \"https://myapi.service.com/users/\"",
"description":"A URL that can be accessed by the webview when using the HTTP APIs. Wildcards can be used following the URL pattern standard.\n\nSee [the URL Pattern spec](https://urlpattern.spec.whatwg.org/) for more information.\n\nExamples:\n\n- \"https://*\" : allows all HTTPS origin on port 443\n\n- \"https://*:*\" : allows all HTTPS origin on any port\n\n- \"https://*.github.com/tauri-apps/tauri\": allows any subdomain of \"github.com\" with the \"tauri-apps/api\" path\n\n- \"https://myapi.service.com/users/*\": allows access to any URLs that begins with \"https://myapi.service.com/users/\"",
"description":"A URL that can be accessed by the webview when using the HTTP APIs. Wildcards can be used following the URL pattern standard.\n\nSee [the URL Pattern spec](https://urlpattern.spec.whatwg.org/) for more information.\n\nExamples:\n\n- \"https://*\" : allows all HTTPS origin on port 443\n\n- \"https://*:*\" : allows all HTTPS origin on any port\n\n- \"https://*.github.com/tauri-apps/tauri\": allows any subdomain of \"github.com\" with the \"tauri-apps/api\" path\n\n- \"https://myapi.service.com/users/*\": allows access to any URLs that begins with \"https://myapi.service.com/users/\"",
"description":"The command name. It can start with a variable that resolves to a system base directory. The variables are: `$AUDIO`, `$CACHE`, `$CONFIG`, `$DATA`, `$LOCALDATA`, `$DESKTOP`, `$DOCUMENT`, `$DOWNLOAD`, `$EXE`, `$FONT`, `$HOME`, `$PICTURE`, `$PUBLIC`, `$RUNTIME`, `$TEMPLATE`, `$VIDEO`, `$RESOURCE`, `$APP`, `$LOG`, `$TEMP`, `$APPCONFIG`, `$APPDATA`, `$APPLOCALDATA`, `$APPCACHE`, `$APPLOG`.",
"type":"string"
},
"name":{
"description":"The name for this allowed shell command configuration.\n\nThis name will be used inside of the webview API to call this command along with any specified arguments.",
"type":"string"
},
"sidecar":{
"description":"If this command is a sidecar command.",
"type":"boolean"
}
}
}
},
"deny":{
"items":{
"title":"Entry",
"description":"A command allowed to be executed by the webview API.",
"description":"The command name. It can start with a variable that resolves to a system base directory. The variables are: `$AUDIO`, `$CACHE`, `$CONFIG`, `$DATA`, `$LOCALDATA`, `$DESKTOP`, `$DOCUMENT`, `$DOWNLOAD`, `$EXE`, `$FONT`, `$HOME`, `$PICTURE`, `$PUBLIC`, `$RUNTIME`, `$TEMPLATE`, `$VIDEO`, `$RESOURCE`, `$APP`, `$LOG`, `$TEMP`, `$APPCONFIG`, `$APPDATA`, `$APPLOCALDATA`, `$APPCACHE`, `$APPLOG`.",
"type":"string"
},
"name":{
"description":"The name for this allowed shell command configuration.\n\nThis name will be used inside of the webview API to call this command along with any specified arguments.",
"type":"string"
},
"sidecar":{
"description":"If this command is a sidecar command.",
"type":"boolean"
}
}
}
}
}
}
]
}
]
},
"Identifier":{
"oneOf":[
{
"description":"app:default -> Default permissions for the plugin.",
"type":"string",
"enum":[
"app:default"
]
},
{
"description":"app:allow-app-hide -> Enables the app_hide command without any pre-configured scope.",
"type":"string",
"enum":[
"app:allow-app-hide"
]
},
{
"description":"app:allow-app-show -> Enables the app_show command without any pre-configured scope.",
"type":"string",
"enum":[
"app:allow-app-show"
]
},
{
"description":"app:allow-name -> Enables the name command without any pre-configured scope.",
"type":"string",
"enum":[
"app:allow-name"
]
},
{
"description":"app:allow-tauri-version -> Enables the tauri_version command without any pre-configured scope.",
"type":"string",
"enum":[
"app:allow-tauri-version"
]
},
{
"description":"app:allow-version -> Enables the version command without any pre-configured scope.",
"type":"string",
"enum":[
"app:allow-version"
]
},
{
"description":"app:deny-app-hide -> Denies the app_hide command without any pre-configured scope.",
"type":"string",
"enum":[
"app:deny-app-hide"
]
},
{
"description":"app:deny-app-show -> Denies the app_show command without any pre-configured scope.",
"type":"string",
"enum":[
"app:deny-app-show"
]
},
{
"description":"app:deny-name -> Denies the name command without any pre-configured scope.",
"type":"string",
"enum":[
"app:deny-name"
]
},
{
"description":"app:deny-tauri-version -> Denies the tauri_version command without any pre-configured scope.",
"type":"string",
"enum":[
"app:deny-tauri-version"
]
},
{
"description":"app:deny-version -> Denies the version command without any pre-configured scope.",
"description":"fs:allow-appcache-meta -> This allows read access to metadata of the `$APPCACHE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appcache-meta"
]
},
{
"description":"fs:allow-appcache-meta-recursive -> This allows read access to metadata of the `$APPCACHE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appcache-meta-recursive"
]
},
{
"description":"fs:allow-appcache-read -> This allows non-recursive read access to the `$APPCACHE` folder.",
"type":"string",
"enum":[
"fs:allow-appcache-read"
]
},
{
"description":"fs:allow-appcache-read-recursive -> This allows full recursive read access to the complete `$APPCACHE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appcache-read-recursive"
]
},
{
"description":"fs:allow-appcache-write -> This allows non-recursive write access to the `$APPCACHE` folder.",
"description":"fs:allow-appcache-write-recursive -> This allows full recursive write access to the complete `$APPCACHE` folder, files and subdirectories.",
"description":"fs:allow-appconfig-meta -> This allows read access to metadata of the `$APPCONFIG` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appconfig-meta"
]
},
{
"description":"fs:allow-appconfig-meta-recursive -> This allows read access to metadata of the `$APPCONFIG` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appconfig-meta-recursive"
]
},
{
"description":"fs:allow-appconfig-read -> This allows non-recursive read access to the `$APPCONFIG` folder.",
"type":"string",
"enum":[
"fs:allow-appconfig-read"
]
},
{
"description":"fs:allow-appconfig-read-recursive -> This allows full recursive read access to the complete `$APPCONFIG` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appconfig-read-recursive"
]
},
{
"description":"fs:allow-appconfig-write -> This allows non-recursive write access to the `$APPCONFIG` folder.",
"description":"fs:allow-appconfig-write-recursive -> This allows full recursive write access to the complete `$APPCONFIG` folder, files and subdirectories.",
"description":"fs:allow-appdata-meta -> This allows read access to metadata of the `$APPDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appdata-meta"
]
},
{
"description":"fs:allow-appdata-meta-recursive -> This allows read access to metadata of the `$APPDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-appdata-meta-recursive"
]
},
{
"description":"fs:allow-appdata-read -> This allows non-recursive read access to the `$APPDATA` folder.",
"type":"string",
"enum":[
"fs:allow-appdata-read"
]
},
{
"description":"fs:allow-appdata-read-recursive -> This allows full recursive read access to the complete `$APPDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-appdata-read-recursive"
]
},
{
"description":"fs:allow-appdata-write -> This allows non-recursive write access to the `$APPDATA` folder.",
"description":"fs:allow-appdata-write-recursive -> This allows full recursive write access to the complete `$APPDATA` folder, files and subdirectories.",
"description":"fs:allow-applocaldata-meta -> This allows read access to metadata of the `$APPLOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-applocaldata-meta"
]
},
{
"description":"fs:allow-applocaldata-meta-recursive -> This allows read access to metadata of the `$APPLOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-applocaldata-meta-recursive"
]
},
{
"description":"fs:allow-applocaldata-read -> This allows non-recursive read access to the `$APPLOCALDATA` folder.",
"type":"string",
"enum":[
"fs:allow-applocaldata-read"
]
},
{
"description":"fs:allow-applocaldata-read-recursive -> This allows full recursive read access to the complete `$APPLOCALDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-applocaldata-read-recursive"
]
},
{
"description":"fs:allow-applocaldata-write -> This allows non-recursive write access to the `$APPLOCALDATA` folder.",
"description":"fs:allow-applocaldata-write-recursive -> This allows full recursive write access to the complete `$APPLOCALDATA` folder, files and subdirectories.",
"description":"fs:allow-applog-write-recursive -> This allows full recursive write access to the complete `$APPLOG` folder, files and subdirectories.",
"description":"fs:allow-config-write-recursive -> This allows full recursive write access to the complete `$CONFIG` folder, files and subdirectories.",
"description":"fs:allow-desktop-meta -> This allows read access to metadata of the `$DESKTOP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-desktop-meta"
]
},
{
"description":"fs:allow-desktop-meta-recursive -> This allows read access to metadata of the `$DESKTOP` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-desktop-meta-recursive"
]
},
{
"description":"fs:allow-desktop-read -> This allows non-recursive read access to the `$DESKTOP` folder.",
"type":"string",
"enum":[
"fs:allow-desktop-read"
]
},
{
"description":"fs:allow-desktop-read-recursive -> This allows full recursive read access to the complete `$DESKTOP` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-desktop-read-recursive"
]
},
{
"description":"fs:allow-desktop-write -> This allows non-recursive write access to the `$DESKTOP` folder.",
"description":"fs:allow-desktop-write-recursive -> This allows full recursive write access to the complete `$DESKTOP` folder, files and subdirectories.",
"description":"fs:allow-document-meta -> This allows read access to metadata of the `$DOCUMENT` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-document-meta"
]
},
{
"description":"fs:allow-document-meta-recursive -> This allows read access to metadata of the `$DOCUMENT` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-document-meta-recursive"
]
},
{
"description":"fs:allow-document-read -> This allows non-recursive read access to the `$DOCUMENT` folder.",
"type":"string",
"enum":[
"fs:allow-document-read"
]
},
{
"description":"fs:allow-document-read-recursive -> This allows full recursive read access to the complete `$DOCUMENT` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-document-read-recursive"
]
},
{
"description":"fs:allow-document-write -> This allows non-recursive write access to the `$DOCUMENT` folder.",
"description":"fs:allow-document-write-recursive -> This allows full recursive write access to the complete `$DOCUMENT` folder, files and subdirectories.",
"description":"fs:allow-download-meta -> This allows read access to metadata of the `$DOWNLOAD` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-download-meta"
]
},
{
"description":"fs:allow-download-meta-recursive -> This allows read access to metadata of the `$DOWNLOAD` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-download-meta-recursive"
]
},
{
"description":"fs:allow-download-read -> This allows non-recursive read access to the `$DOWNLOAD` folder.",
"type":"string",
"enum":[
"fs:allow-download-read"
]
},
{
"description":"fs:allow-download-read-recursive -> This allows full recursive read access to the complete `$DOWNLOAD` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-download-read-recursive"
]
},
{
"description":"fs:allow-download-write -> This allows non-recursive write access to the `$DOWNLOAD` folder.",
"description":"fs:allow-download-write-recursive -> This allows full recursive write access to the complete `$DOWNLOAD` folder, files and subdirectories.",
"description":"fs:allow-localdata-meta -> This allows read access to metadata of the `$LOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-localdata-meta"
]
},
{
"description":"fs:allow-localdata-meta-recursive -> This allows read access to metadata of the `$LOCALDATA` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-localdata-meta-recursive"
]
},
{
"description":"fs:allow-localdata-read -> This allows non-recursive read access to the `$LOCALDATA` folder.",
"type":"string",
"enum":[
"fs:allow-localdata-read"
]
},
{
"description":"fs:allow-localdata-read-recursive -> This allows full recursive read access to the complete `$LOCALDATA` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-localdata-read-recursive"
]
},
{
"description":"fs:allow-localdata-write -> This allows non-recursive write access to the `$LOCALDATA` folder.",
"description":"fs:allow-localdata-write-recursive -> This allows full recursive write access to the complete `$LOCALDATA` folder, files and subdirectories.",
"description":"fs:allow-picture-meta -> This allows read access to metadata of the `$PICTURE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-picture-meta"
]
},
{
"description":"fs:allow-picture-meta-recursive -> This allows read access to metadata of the `$PICTURE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-picture-meta-recursive"
]
},
{
"description":"fs:allow-picture-read -> This allows non-recursive read access to the `$PICTURE` folder.",
"type":"string",
"enum":[
"fs:allow-picture-read"
]
},
{
"description":"fs:allow-picture-read-recursive -> This allows full recursive read access to the complete `$PICTURE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-picture-read-recursive"
]
},
{
"description":"fs:allow-picture-write -> This allows non-recursive write access to the `$PICTURE` folder.",
"description":"fs:allow-picture-write-recursive -> This allows full recursive write access to the complete `$PICTURE` folder, files and subdirectories.",
"description":"fs:allow-public-write-recursive -> This allows full recursive write access to the complete `$PUBLIC` folder, files and subdirectories.",
"description":"fs:allow-resource-meta -> This allows read access to metadata of the `$RESOURCE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-resource-meta"
]
},
{
"description":"fs:allow-resource-meta-recursive -> This allows read access to metadata of the `$RESOURCE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-resource-meta-recursive"
]
},
{
"description":"fs:allow-resource-read -> This allows non-recursive read access to the `$RESOURCE` folder.",
"type":"string",
"enum":[
"fs:allow-resource-read"
]
},
{
"description":"fs:allow-resource-read-recursive -> This allows full recursive read access to the complete `$RESOURCE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-resource-read-recursive"
]
},
{
"description":"fs:allow-resource-write -> This allows non-recursive write access to the `$RESOURCE` folder.",
"description":"fs:allow-resource-write-recursive -> This allows full recursive write access to the complete `$RESOURCE` folder, files and subdirectories.",
"description":"fs:allow-runtime-meta -> This allows read access to metadata of the `$RUNTIME` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-runtime-meta"
]
},
{
"description":"fs:allow-runtime-meta-recursive -> This allows read access to metadata of the `$RUNTIME` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-runtime-meta-recursive"
]
},
{
"description":"fs:allow-runtime-read -> This allows non-recursive read access to the `$RUNTIME` folder.",
"type":"string",
"enum":[
"fs:allow-runtime-read"
]
},
{
"description":"fs:allow-runtime-read-recursive -> This allows full recursive read access to the complete `$RUNTIME` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-runtime-read-recursive"
]
},
{
"description":"fs:allow-runtime-write -> This allows non-recursive write access to the `$RUNTIME` folder.",
"description":"fs:allow-runtime-write-recursive -> This allows full recursive write access to the complete `$RUNTIME` folder, files and subdirectories.",
"description":"fs:allow-template-meta -> This allows read access to metadata of the `$TEMPLATE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-template-meta"
]
},
{
"description":"fs:allow-template-meta-recursive -> This allows read access to metadata of the `$TEMPLATE` folder, including file listing and statistics.",
"type":"string",
"enum":[
"fs:allow-template-meta-recursive"
]
},
{
"description":"fs:allow-template-read -> This allows non-recursive read access to the `$TEMPLATE` folder.",
"type":"string",
"enum":[
"fs:allow-template-read"
]
},
{
"description":"fs:allow-template-read-recursive -> This allows full recursive read access to the complete `$TEMPLATE` folder, files and subdirectories.",
"type":"string",
"enum":[
"fs:allow-template-read-recursive"
]
},
{
"description":"fs:allow-template-write -> This allows non-recursive write access to the `$TEMPLATE` folder.",
"description":"fs:allow-template-write-recursive -> This allows full recursive write access to the complete `$TEMPLATE` folder, files and subdirectories.",
"description":"fs:deny-default -> This denies access to dangerous Tauri relevant files and folders by default.",
"type":"string",
"enum":[
"fs:deny-default"
]
},
{
"description":"fs:default -> # Tauri `fs` default permissions\n\nThis configuration file defines the default permissions granted\nto the filesystem.\n\n### Granted Permissions\n\nThis default permission set enables all read-related commands and\nallows access to the `$APP` folder and sub directories created in it.\nThe location of the `$APP` folder depends on the operating system,\nwhere the application is run.\n\nIn general the `$APP` folder needs to be manually created\nby the application at runtime, before accessing files or folders\nin it is possible.\n\n### Denied Permissions\n\nThis default permission set prevents access to critical components\nof the Tauri application by default.\nOn Windows the webview data folder access is denied.\n\n",
"type":"string",
"enum":[
"fs:default"
]
},
{
"description":"fs:allow-copy-file -> Enables the copy_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-copy-file"
]
},
{
"description":"fs:allow-create -> Enables the create command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-create"
]
},
{
"description":"fs:allow-exists -> Enables the exists command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-exists"
]
},
{
"description":"fs:allow-fstat -> Enables the fstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-fstat"
]
},
{
"description":"fs:allow-ftruncate -> Enables the ftruncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-ftruncate"
]
},
{
"description":"fs:allow-lstat -> Enables the lstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-lstat"
]
},
{
"description":"fs:allow-mkdir -> Enables the mkdir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-mkdir"
]
},
{
"description":"fs:allow-open -> Enables the open command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-open"
]
},
{
"description":"fs:allow-read -> Enables the read command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read"
]
},
{
"description":"fs:allow-read-dir -> Enables the read_dir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-dir"
]
},
{
"description":"fs:allow-read-file -> Enables the read_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-file"
]
},
{
"description":"fs:allow-read-text-file -> Enables the read_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file"
]
},
{
"description":"fs:allow-read-text-file-lines -> Enables the read_text_file_lines command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file-lines"
]
},
{
"description":"fs:allow-read-text-file-lines-next -> Enables the read_text_file_lines_next command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-read-text-file-lines-next"
]
},
{
"description":"fs:allow-remove -> Enables the remove command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-remove"
]
},
{
"description":"fs:allow-rename -> Enables the rename command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-rename"
]
},
{
"description":"fs:allow-seek -> Enables the seek command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-seek"
]
},
{
"description":"fs:allow-stat -> Enables the stat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-stat"
]
},
{
"description":"fs:allow-truncate -> Enables the truncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-truncate"
]
},
{
"description":"fs:allow-unwatch -> Enables the unwatch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-unwatch"
]
},
{
"description":"fs:allow-watch -> Enables the watch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-watch"
]
},
{
"description":"fs:allow-write -> Enables the write command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write"
]
},
{
"description":"fs:allow-write-file -> Enables the write_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write-file"
]
},
{
"description":"fs:allow-write-text-file -> Enables the write_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:allow-write-text-file"
]
},
{
"description":"fs:deny-copy-file -> Denies the copy_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-copy-file"
]
},
{
"description":"fs:deny-create -> Denies the create command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-create"
]
},
{
"description":"fs:deny-exists -> Denies the exists command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-exists"
]
},
{
"description":"fs:deny-fstat -> Denies the fstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-fstat"
]
},
{
"description":"fs:deny-ftruncate -> Denies the ftruncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-ftruncate"
]
},
{
"description":"fs:deny-lstat -> Denies the lstat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-lstat"
]
},
{
"description":"fs:deny-mkdir -> Denies the mkdir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-mkdir"
]
},
{
"description":"fs:deny-open -> Denies the open command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-open"
]
},
{
"description":"fs:deny-read -> Denies the read command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read"
]
},
{
"description":"fs:deny-read-dir -> Denies the read_dir command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-dir"
]
},
{
"description":"fs:deny-read-file -> Denies the read_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-file"
]
},
{
"description":"fs:deny-read-text-file -> Denies the read_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file"
]
},
{
"description":"fs:deny-read-text-file-lines -> Denies the read_text_file_lines command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file-lines"
]
},
{
"description":"fs:deny-read-text-file-lines-next -> Denies the read_text_file_lines_next command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-read-text-file-lines-next"
]
},
{
"description":"fs:deny-remove -> Denies the remove command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-remove"
]
},
{
"description":"fs:deny-rename -> Denies the rename command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-rename"
]
},
{
"description":"fs:deny-seek -> Denies the seek command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-seek"
]
},
{
"description":"fs:deny-stat -> Denies the stat command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-stat"
]
},
{
"description":"fs:deny-truncate -> Denies the truncate command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-truncate"
]
},
{
"description":"fs:deny-unwatch -> Denies the unwatch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-unwatch"
]
},
{
"description":"fs:deny-watch -> Denies the watch command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-watch"
]
},
{
"description":"fs:deny-webview-data-linux -> This denies read access to the\n`$APPLOCALDATA` folder on linux as the webview data and configuration values are stored here.\nAllowing access can lead to sensitive information disclosure and should be well considered.",
"type":"string",
"enum":[
"fs:deny-webview-data-linux"
]
},
{
"description":"fs:deny-webview-data-windows -> This denies read access to the\n`$APPLOCALDATA/EBWebView` folder on windows as the webview data and configuration values are stored here.\nAllowing access can lead to sensitive information disclosure and should be well considered.",
"type":"string",
"enum":[
"fs:deny-webview-data-windows"
]
},
{
"description":"fs:deny-write -> Denies the write command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write"
]
},
{
"description":"fs:deny-write-file -> Denies the write_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write-file"
]
},
{
"description":"fs:deny-write-text-file -> Denies the write_text_file command without any pre-configured scope.",
"type":"string",
"enum":[
"fs:deny-write-text-file"
]
},
{
"description":"fs:read-all -> This enables all read related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-all"
]
},
{
"description":"fs:read-dirs -> This enables directory read and file metadata related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-dirs"
]
},
{
"description":"fs:read-files -> This enables file read related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-files"
]
},
{
"description":"fs:read-meta -> This enables all index or metadata related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:read-meta"
]
},
{
"description":"fs:scope -> An empty permission you can use to modify the global scope.",
"type":"string",
"enum":[
"fs:scope"
]
},
{
"description":"fs:scope-app -> This scope permits access to all files and list content of top level directories in the `$APP`folder.",
"type":"string",
"enum":[
"fs:scope-app"
]
},
{
"description":"fs:scope-app-index -> This scope permits to list all files and folders in the `$APP`folder.",
"type":"string",
"enum":[
"fs:scope-app-index"
]
},
{
"description":"fs:scope-app-recursive -> This scope recursive access to the complete `$APP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-app-recursive"
]
},
{
"description":"fs:scope-appcache -> This scope permits access to all files and list content of top level directories in the `$APPCACHE`folder.",
"type":"string",
"enum":[
"fs:scope-appcache"
]
},
{
"description":"fs:scope-appcache-index -> This scope permits to list all files and folders in the `$APPCACHE`folder.",
"type":"string",
"enum":[
"fs:scope-appcache-index"
]
},
{
"description":"fs:scope-appcache-recursive -> This scope recursive access to the complete `$APPCACHE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appcache-recursive"
]
},
{
"description":"fs:scope-appconfig -> This scope permits access to all files and list content of top level directories in the `$APPCONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-appconfig"
]
},
{
"description":"fs:scope-appconfig-index -> This scope permits to list all files and folders in the `$APPCONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-appconfig-index"
]
},
{
"description":"fs:scope-appconfig-recursive -> This scope recursive access to the complete `$APPCONFIG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appconfig-recursive"
]
},
{
"description":"fs:scope-appdata -> This scope permits access to all files and list content of top level directories in the `$APPDATA`folder.",
"type":"string",
"enum":[
"fs:scope-appdata"
]
},
{
"description":"fs:scope-appdata-index -> This scope permits to list all files and folders in the `$APPDATA`folder.",
"type":"string",
"enum":[
"fs:scope-appdata-index"
]
},
{
"description":"fs:scope-appdata-recursive -> This scope recursive access to the complete `$APPDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-appdata-recursive"
]
},
{
"description":"fs:scope-applocaldata -> This scope permits access to all files and list content of top level directories in the `$APPLOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-applocaldata"
]
},
{
"description":"fs:scope-applocaldata-index -> This scope permits to list all files and folders in the `$APPLOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-applocaldata-index"
]
},
{
"description":"fs:scope-applocaldata-recursive -> This scope recursive access to the complete `$APPLOCALDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-applocaldata-recursive"
]
},
{
"description":"fs:scope-applog -> This scope permits access to all files and list content of top level directories in the `$APPLOG`folder.",
"type":"string",
"enum":[
"fs:scope-applog"
]
},
{
"description":"fs:scope-applog-index -> This scope permits to list all files and folders in the `$APPLOG`folder.",
"type":"string",
"enum":[
"fs:scope-applog-index"
]
},
{
"description":"fs:scope-applog-recursive -> This scope recursive access to the complete `$APPLOG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-applog-recursive"
]
},
{
"description":"fs:scope-audio -> This scope permits access to all files and list content of top level directories in the `$AUDIO`folder.",
"type":"string",
"enum":[
"fs:scope-audio"
]
},
{
"description":"fs:scope-audio-index -> This scope permits to list all files and folders in the `$AUDIO`folder.",
"type":"string",
"enum":[
"fs:scope-audio-index"
]
},
{
"description":"fs:scope-audio-recursive -> This scope recursive access to the complete `$AUDIO` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-audio-recursive"
]
},
{
"description":"fs:scope-cache -> This scope permits access to all files and list content of top level directories in the `$CACHE`folder.",
"type":"string",
"enum":[
"fs:scope-cache"
]
},
{
"description":"fs:scope-cache-index -> This scope permits to list all files and folders in the `$CACHE`folder.",
"type":"string",
"enum":[
"fs:scope-cache-index"
]
},
{
"description":"fs:scope-cache-recursive -> This scope recursive access to the complete `$CACHE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-cache-recursive"
]
},
{
"description":"fs:scope-config -> This scope permits access to all files and list content of top level directories in the `$CONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-config"
]
},
{
"description":"fs:scope-config-index -> This scope permits to list all files and folders in the `$CONFIG`folder.",
"type":"string",
"enum":[
"fs:scope-config-index"
]
},
{
"description":"fs:scope-config-recursive -> This scope recursive access to the complete `$CONFIG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-config-recursive"
]
},
{
"description":"fs:scope-data -> This scope permits access to all files and list content of top level directories in the `$DATA`folder.",
"type":"string",
"enum":[
"fs:scope-data"
]
},
{
"description":"fs:scope-data-index -> This scope permits to list all files and folders in the `$DATA`folder.",
"type":"string",
"enum":[
"fs:scope-data-index"
]
},
{
"description":"fs:scope-data-recursive -> This scope recursive access to the complete `$DATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-data-recursive"
]
},
{
"description":"fs:scope-desktop -> This scope permits access to all files and list content of top level directories in the `$DESKTOP`folder.",
"type":"string",
"enum":[
"fs:scope-desktop"
]
},
{
"description":"fs:scope-desktop-index -> This scope permits to list all files and folders in the `$DESKTOP`folder.",
"type":"string",
"enum":[
"fs:scope-desktop-index"
]
},
{
"description":"fs:scope-desktop-recursive -> This scope recursive access to the complete `$DESKTOP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-desktop-recursive"
]
},
{
"description":"fs:scope-document -> This scope permits access to all files and list content of top level directories in the `$DOCUMENT`folder.",
"type":"string",
"enum":[
"fs:scope-document"
]
},
{
"description":"fs:scope-document-index -> This scope permits to list all files and folders in the `$DOCUMENT`folder.",
"type":"string",
"enum":[
"fs:scope-document-index"
]
},
{
"description":"fs:scope-document-recursive -> This scope recursive access to the complete `$DOCUMENT` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-document-recursive"
]
},
{
"description":"fs:scope-download -> This scope permits access to all files and list content of top level directories in the `$DOWNLOAD`folder.",
"type":"string",
"enum":[
"fs:scope-download"
]
},
{
"description":"fs:scope-download-index -> This scope permits to list all files and folders in the `$DOWNLOAD`folder.",
"type":"string",
"enum":[
"fs:scope-download-index"
]
},
{
"description":"fs:scope-download-recursive -> This scope recursive access to the complete `$DOWNLOAD` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-download-recursive"
]
},
{
"description":"fs:scope-exe -> This scope permits access to all files and list content of top level directories in the `$EXE`folder.",
"type":"string",
"enum":[
"fs:scope-exe"
]
},
{
"description":"fs:scope-exe-index -> This scope permits to list all files and folders in the `$EXE`folder.",
"type":"string",
"enum":[
"fs:scope-exe-index"
]
},
{
"description":"fs:scope-exe-recursive -> This scope recursive access to the complete `$EXE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-exe-recursive"
]
},
{
"description":"fs:scope-font -> This scope permits access to all files and list content of top level directories in the `$FONT`folder.",
"type":"string",
"enum":[
"fs:scope-font"
]
},
{
"description":"fs:scope-font-index -> This scope permits to list all files and folders in the `$FONT`folder.",
"type":"string",
"enum":[
"fs:scope-font-index"
]
},
{
"description":"fs:scope-font-recursive -> This scope recursive access to the complete `$FONT` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-font-recursive"
]
},
{
"description":"fs:scope-home -> This scope permits access to all files and list content of top level directories in the `$HOME`folder.",
"type":"string",
"enum":[
"fs:scope-home"
]
},
{
"description":"fs:scope-home-index -> This scope permits to list all files and folders in the `$HOME`folder.",
"type":"string",
"enum":[
"fs:scope-home-index"
]
},
{
"description":"fs:scope-home-recursive -> This scope recursive access to the complete `$HOME` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-home-recursive"
]
},
{
"description":"fs:scope-localdata -> This scope permits access to all files and list content of top level directories in the `$LOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-localdata"
]
},
{
"description":"fs:scope-localdata-index -> This scope permits to list all files and folders in the `$LOCALDATA`folder.",
"type":"string",
"enum":[
"fs:scope-localdata-index"
]
},
{
"description":"fs:scope-localdata-recursive -> This scope recursive access to the complete `$LOCALDATA` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-localdata-recursive"
]
},
{
"description":"fs:scope-log -> This scope permits access to all files and list content of top level directories in the `$LOG`folder.",
"type":"string",
"enum":[
"fs:scope-log"
]
},
{
"description":"fs:scope-log-index -> This scope permits to list all files and folders in the `$LOG`folder.",
"type":"string",
"enum":[
"fs:scope-log-index"
]
},
{
"description":"fs:scope-log-recursive -> This scope recursive access to the complete `$LOG` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-log-recursive"
]
},
{
"description":"fs:scope-picture -> This scope permits access to all files and list content of top level directories in the `$PICTURE`folder.",
"type":"string",
"enum":[
"fs:scope-picture"
]
},
{
"description":"fs:scope-picture-index -> This scope permits to list all files and folders in the `$PICTURE`folder.",
"type":"string",
"enum":[
"fs:scope-picture-index"
]
},
{
"description":"fs:scope-picture-recursive -> This scope recursive access to the complete `$PICTURE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-picture-recursive"
]
},
{
"description":"fs:scope-public -> This scope permits access to all files and list content of top level directories in the `$PUBLIC`folder.",
"type":"string",
"enum":[
"fs:scope-public"
]
},
{
"description":"fs:scope-public-index -> This scope permits to list all files and folders in the `$PUBLIC`folder.",
"type":"string",
"enum":[
"fs:scope-public-index"
]
},
{
"description":"fs:scope-public-recursive -> This scope recursive access to the complete `$PUBLIC` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-public-recursive"
]
},
{
"description":"fs:scope-resource -> This scope permits access to all files and list content of top level directories in the `$RESOURCE`folder.",
"type":"string",
"enum":[
"fs:scope-resource"
]
},
{
"description":"fs:scope-resource-index -> This scope permits to list all files and folders in the `$RESOURCE`folder.",
"type":"string",
"enum":[
"fs:scope-resource-index"
]
},
{
"description":"fs:scope-resource-recursive -> This scope recursive access to the complete `$RESOURCE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-resource-recursive"
]
},
{
"description":"fs:scope-runtime -> This scope permits access to all files and list content of top level directories in the `$RUNTIME`folder.",
"type":"string",
"enum":[
"fs:scope-runtime"
]
},
{
"description":"fs:scope-runtime-index -> This scope permits to list all files and folders in the `$RUNTIME`folder.",
"type":"string",
"enum":[
"fs:scope-runtime-index"
]
},
{
"description":"fs:scope-runtime-recursive -> This scope recursive access to the complete `$RUNTIME` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-runtime-recursive"
]
},
{
"description":"fs:scope-temp -> This scope permits access to all files and list content of top level directories in the `$TEMP`folder.",
"type":"string",
"enum":[
"fs:scope-temp"
]
},
{
"description":"fs:scope-temp-index -> This scope permits to list all files and folders in the `$TEMP`folder.",
"type":"string",
"enum":[
"fs:scope-temp-index"
]
},
{
"description":"fs:scope-temp-recursive -> This scope recursive access to the complete `$TEMP` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-temp-recursive"
]
},
{
"description":"fs:scope-template -> This scope permits access to all files and list content of top level directories in the `$TEMPLATE`folder.",
"type":"string",
"enum":[
"fs:scope-template"
]
},
{
"description":"fs:scope-template-index -> This scope permits to list all files and folders in the `$TEMPLATE`folder.",
"type":"string",
"enum":[
"fs:scope-template-index"
]
},
{
"description":"fs:scope-template-recursive -> This scope recursive access to the complete `$TEMPLATE` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-template-recursive"
]
},
{
"description":"fs:scope-video -> This scope permits access to all files and list content of top level directories in the `$VIDEO`folder.",
"type":"string",
"enum":[
"fs:scope-video"
]
},
{
"description":"fs:scope-video-index -> This scope permits to list all files and folders in the `$VIDEO`folder.",
"type":"string",
"enum":[
"fs:scope-video-index"
]
},
{
"description":"fs:scope-video-recursive -> This scope recursive access to the complete `$VIDEO` folder, including sub directories and files.",
"type":"string",
"enum":[
"fs:scope-video-recursive"
]
},
{
"description":"fs:write-all -> This enables all write related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:write-all"
]
},
{
"description":"fs:write-files -> This enables all file write related commands without any pre-configured accessible paths.",
"type":"string",
"enum":[
"fs:write-files"
]
},
{
"description":"http:default -> Allows all fetch operations",
"type":"string",
"enum":[
"http:default"
]
},
{
"description":"http:allow-fetch -> Enables the fetch command without any pre-configured scope.",
"type":"string",
"enum":[
"http:allow-fetch"
]
},
{
"description":"http:allow-fetch-cancel -> Enables the fetch_cancel command without any pre-configured scope.",
"type":"string",
"enum":[
"http:allow-fetch-cancel"
]
},
{
"description":"http:allow-fetch-read-body -> Enables the fetch_read_body command without any pre-configured scope.",
"type":"string",
"enum":[
"http:allow-fetch-read-body"
]
},
{
"description":"http:allow-fetch-send -> Enables the fetch_send command without any pre-configured scope.",
"type":"string",
"enum":[
"http:allow-fetch-send"
]
},
{
"description":"http:deny-fetch -> Denies the fetch command without any pre-configured scope.",
"type":"string",
"enum":[
"http:deny-fetch"
]
},
{
"description":"http:deny-fetch-cancel -> Denies the fetch_cancel command without any pre-configured scope.",
"type":"string",
"enum":[
"http:deny-fetch-cancel"
]
},
{
"description":"http:deny-fetch-read-body -> Denies the fetch_read_body command without any pre-configured scope.",
"type":"string",
"enum":[
"http:deny-fetch-read-body"
]
},
{
"description":"http:deny-fetch-send -> Denies the fetch_send command without any pre-configured scope.",
"description":"window-state:deny-save-window-state -> Denies the save_window_state command without any pre-configured scope.",
"type":"string",
"enum":[
"window-state:deny-save-window-state"
]
}
]
},
"Value":{
"description":"All supported ACL values.",
"anyOf":[
{
"description":"Represents a null JSON value.",
"type":"null"
},
{
"description":"Represents a [`bool`].",
"type":"boolean"
},
{
"description":"Represents a valid ACL [`Number`].",
"allOf":[
{
"$ref":"#/definitions/Number"
}
]
},
{
"description":"Represents a [`String`].",
"type":"string"
},
{
"description":"Represents a list of other [`Value`]s.",
"type":"array",
"items":{
"$ref":"#/definitions/Value"
}
},
{
"description":"Represents a map of [`String`] keys to [`Value`]s.",
"type":"object",
"additionalProperties":{
"$ref":"#/definitions/Value"
}
}
]
},
"Number":{
"description":"A valid ACL number.",
"anyOf":[
{
"description":"Represents an [`i64`].",
"type":"integer",
"format":"int64"
},
{
"description":"Represents a [`f64`].",
"type":"number",
"format":"double"
}
]
},
"Target":{
"description":"Platform target.",
"oneOf":[
{
"description":"MacOS.",
"type":"string",
"enum":[
"macOS"
]
},
{
"description":"Windows.",
"type":"string",
"enum":[
"windows"
]
},
{
"description":"Linux.",
"type":"string",
"enum":[
"linux"
]
},
{
"description":"Android.",
"type":"string",
"enum":[
"android"
]
},
{
"description":"iOS.",
"type":"string",
"enum":[
"iOS"
]
}
]
},
"ShellAllowedArg":{
"description":"A command argument allowed to be executed by the webview API.",
"anyOf":[
{
"description":"A non-configurable argument that is passed to the command in the order it was specified.",
"type":"string"
},
{
"description":"A variable that is set while calling the command from the webview API.",
"type":"object",
"required":[
"validator"
],
"properties":{
"validator":{
"description":"[regex] validator to require passed values to conform to an expected input.\n\nThis will require the argument value passed to this variable to match the `validator` regex before it will be executed.\n\n[regex]: https://docs.rs/regex/latest/regex/#syntax",
"type":"string"
}
},
"additionalProperties":false
}
]
},
"ShellAllowedArgs":{
"description":"A set of command arguments allowed to be executed by the webview API.\n\nA value of `true` will allow any arguments to be passed to the command. `false` will disable all arguments. A list of [`ShellAllowedArg`] will set those arguments as the only valid arguments to be passed to the attached command configuration.",
"anyOf":[
{
"description":"Use a simple boolean to allow all or disable all arguments to this command configuration.",
"type":"boolean"
},
{
"description":"A specific set of [`ShellAllowedArg`] that are valid to call for the command configuration.",