Announcements
Autodesk Community will be read-only between April 26 and April 27 as we complete essential maintenance. We will remove this banner once completed. Thanks for your understanding

Plugin Security

boeld
Contributor Contributor
725 Views
4 Replies
Message 1 of 5

Plugin Security

boeld
Contributor
Contributor

After installing a plugin that didn't work at all, I searched for where it was and found out that there are dll's installed with plugins. Made me wonder about the security of plugins for Fusion 360. Is that an issue at all? Or is it (theoretically) not possible that harmful code is injected in the plugins that are available for download?

 

0 Likes
726 Views
4 Replies
Replies (4)
Message 2 of 5

jodom4
Community Manager
Community Manager

@prainsberry , can you offer some insight here?


Jonathan Odom
Community Manager + Content Creator
Oregon, USA

Become an Autodesk Fusion Insider



0 Likes
Message 3 of 5

prainsberry
Autodesk
Autodesk

Hello,

For plugins downloaded from the Autodesk App store there are some levels of scrutiny that are applied, but I would refer you to the publisher guidelines for information on what it takes to publish to the store:
https://apps.autodesk.com/Publisher/ProductGuidelines
For add-ins and scripts sourced from other locations it comes down to whether you trust the source.  Add-ins running in Fusion 360 are being executed at runtime and are not really restricted from accessing resources outside the parent Fusion 360 process and thus it is possible that a malicious actor could have placed some nefarious code into a plugin.  

We would definitely encourage you to know the source of any add-in or script you attempt to install. 



Patrick Rainsberry
Developer Advocate, Fusion 360
0 Likes
Message 4 of 5

boeld
Contributor
Contributor

The plugin I was talking about, came from the app store. But is there a guarantee that the guidelines you posted, are actually used in the plugins in the app store? How is this tested? How are these guidelines more than just guidelines? How are they enforced - if at all?

 

In other words: to what extend I can trust plugins that I download from the app store?

0 Likes
Message 5 of 5

godfreb
Explorer
Explorer

Hello,

 

The apps contained within the App Store are scanned by multiple virus scanners. Any components within an application should be safe.


Brandon, App Store Developer.

0 Likes