Expand description
Wasmtime-backed WASM executor.
Executes wasm32-wasi capability binaries inside a sandboxed Wasmtime engine.
Input is fed via WASI stdin; output is captured from WASI stdout.
No ambient WASI authority is granted — all capabilities are deny-by-default.
Structs§
- Activated
Connector - Connector
Invoke Request - Versioned guest request accepted by
traverse_host::connector_invoke. - Connector
Invoke Response - Non-secret response returned to the guest by a mediated connector.
- Host
AbiImport - A host import observed in a WASM module.
- Host
AbiValidation - Successful load-time ABI validation evidence.
- Mediated
Connector Context - The host-owned authorization context for one WASM execution.
- Wasm
Binary Cache Stats - Snapshot of on-disk WASM binary cache counters.
- Wasm
Execution Limits - Per-invocation resource limits for
WasmExecutor. - Wasm
Executor - Executes
.wasm32-wasicapability binaries via Wasmtime. - Wasm
Module Cache Config - Bounded compiled-module cache configuration for
WasmExecutor. - Wasm
Module Cache Stats - Snapshot of compiled-module cache counters.
Constants§
- SUPPORTED_
HOST_ ABI_ VERSION - Traverse Host ABI v1 is independently versioned from the runtime crate.
Traits§
- Mediated
Connector - A host-owned activated connector. Its implementation is never visible to a guest.
Functions§
- supported_
host_ abi_ versions - Return the Traverse Host ABI versions supported by this runtime.
- verify_
wasm_ host_ abi_ bytes - Validate a WASM binary against the declared Traverse Host ABI import whitelist.