AI-Canvas-tauriBLOCK
Local-first AI canvas for visual workflows, AI short drama, image/video generation, storyboarding and asset management. ComfyUI, AI agents, MCP & Blender. 本地优先 AI 画布:AI短剧、AI资产管理、图像/视频生成、分镜制作与视频剪辑。
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
⭐ 开源计划: 当本项目的 GitHub Stars 达到 10,000(10k) 时,项目自有代码将转用 [MIT License(MIT 许可证)](https://opensource.org/license/mit),允许自由使用、修改、分发和商用,须保留版权声明和许可文本。在此之前,仍以 LICENSE 中的当前许可条款为准。
简体中文 · English · 日本語 · 한국어
面向 AI短剧创作、AI资产管理、图像/视频生成与分镜制作 的本地优先 AI 多模态画布与可视化工作流桌面应用,集成 ComfyUI、对话 AI Agent 与 MCP,基于 Tauri 2 + React 19 + React Flow 12 构建。
AI Canvas Tauri 将文本、图像、视频、音频、逐帧动画、Markdown、分镜、360° 全景和手绘笔记组织成可连接的画布节点。你可以在同一个项目中编排生成链路、统一管理角色库、人物/场景/道具与本地素材、执行 ComfyUI 工作流、安装 JavaScript 或可信 Python 用户插件,也可以通过对话助手查询或修改画布、生成媒体、派出只读子智能体、读取授权文件并沉淀项目记忆。项目还能拆成剧集与分集,一部 AI短剧的每一集各占一张画布,角色库与素材整部剧共用。
在线体验: (首屏可直接试用,内置演示画布)
下载: (获取桌面安装包)
在线体验 · 下载 · 核心能力 · 快速开始 · 项目文档 · License
在线版适合体验画布与界面。用户插件、文件系统、凭据存储、独立窗口、3D 导演台、本地模型等能力依赖 Tauri 桌面环境;完整体验请按下方步骤启动桌面应用。
界面预览
资源库
统一浏览项目文件与全局资产,按类型、文件夹和标签筛选素材。
资产详情与提示词
全屏预览图片,查看与编辑提示词、参考图和标签,并查看图片尺寸、文件大小与来源。
帧动画编辑
逐帧预览与编辑动画,调整帧顺序、偏移、播放帧率和角色对齐。
核心能力
0d9c463b4d09OBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add ai-canvas-tauri -- npx -y [email protected]
{
"mcpServers": {
"ai-canvas-tauri": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (46)
46 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
APIMart | read | 一个 API 搞定一切——节省 30-70% |
CC-MAX满血 | read | Claude 稳定分组 |
CCC生图白嫖 | read | 该渠道无法限制分辨率,请以渠道实际输出为准 |
CCC生图稳定 | read | 自营 Adobe 图片渠道,支持 4K 传参 |
Exa | read | 支持语义检索与网页摘要的搜索服务 |
GPT-Pro分组 | read | GPT Pro 质量与稳定性分组 |
GPT-特价Pro | read | GPT Pro 特价分组 |
GRSAI | read | 图像、视频与多模态文本模型服务 |
RunningHUB工作流 | read | 工作流模板:替换/风格迁移,结果更可控 |
RunningHUB模型 | read | 模型 API:文生图/图生图/图片编辑 |
RunningHub | read | RunningHub 标准模型 API 与工作流 |
Sora2U | read | Seedance 视频与图片模型 |
Style | read | cinematic |
Tavily | read | 面向 AI Agent 的搜索与来源服务 |
canvas_query | read | 读取 |
overseas-short-drama-workflow | read | 【海外短剧工作流】海外版短剧总控入口。 用于短剧选题、剧本评估和海外本地化。 |
两步链 | read | |
像素艺术 | read | 统一色板与像素质感 |
写实摄影 | read | 真实质感,光影自然 |
分镜师 | read | 依据剧本与项目人物场景资产产出结构化分镜表,供主任务落地为分镜节点。 |
分镜脚本 | read | 把剧本拆成分镜 |
剧本分析师 | read | 分析剧本结构、人物动机与节奏问题,输出按优先级排序的修改建议。 |
动漫风格 | read | 日系二次元绘画 |
动画专用 | read | 擅长二次元动画与运镜 |
即梦 | read | 官方 OAuth 登录,自动文生图/图生图/视频 |
可用 | read | |
台词润色师 | read | 润色台词口语度 |
国模-稳定2折 | read | DeepSeek、GLM、Qwen、Hy3、MiMo 等国产模型 |
复古胶片 | read | 胶片颗粒与怀旧影调 |
扁平插画 | read | 简洁干净的矢量风 |
智谱联网搜索 | read | 智谱开放平台提供的 Web Search API |
水墨画 | read | 水墨留白与写意笔触 |
水彩画 | read | 柔和通透的晕染 |
油画 | read | 厚重肌理与笔触 |
海外剧本优化 | read | 优化海外短剧剧本 |
火山方舟 | read | Ark Seedream 图像生成 API |
电影质感 | read | 电影级调色与光影 |
短剧分镜 | read | 生成短剧分镜 |
短剧开场钩子 | read | 为短剧设计前三秒钩子 |
短剧总导演 | read | 短剧总导演 |
短剧总控 | read | 路由短剧创作任务 |
短剧节奏设计 | read | 用于短剧开场钩子与卡点设计 |
素描 | read | 黑白线条速写 |
自定义快捷指令 | read | 输入说明与提示词模板 |
自定义接口 | read | OpenAI 兼容接口;非标准接口用模型的调用协议单独声明 |
赛博朋克 | read | 霓虹都市科技感 |
Trust audit
BLOCKgrade F · trust 42/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | WARN |
| L1 | Static analysis of the code | FAIL |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (7 observation(s))
- Network
- declared (6 observation(s))
- Shell
- declared (4 observation(s))
- Dependencies
- not all pinned
- Secrets in source
- found
Findings (25)
atob( ... new Function(
exec(compile(payload["source"], "<ai-canvas-plugin>", "exec"), namespace, namespace)
pub fn eval(&self, js: impl Into<String>) -> crate::Result<()> {pub fn eval(&self, js: impl Into<String>) -> crate::Result<()> {assert!(normalize_requested_relative_path("~/.ssh/id_rsa").is_err());"169.254.169.254",
icon.icns
ai_canvas_female_white.blend
ai_canvas_male_white.blend
startup.blend
assert!(normalize_archive_path(Path::new("/etc/passwd")).is_err());const CLOUDFLARE_DOH_ENDPOINT: &str = "https://1.1.1.1/dns-query";
r#"{"test":"don\\🚀🐱👤\\'t forget to escape me!🚀🐱👤","te🚀🐱👤st2":"don't forget to escape me!","test3":"\\🚀🐱👤\\\\'''\\\\🚀🐱👤\\\\🚀🐱👤\\'''''"}"#.into()let result = r#"JSON.parse('{"test":"don\\\\🚀🐱👤\\\\\'t forget to escape me!🚀🐱👤","te🚀🐱👤st2":"don\'t forget to escape me!","test3":"\\\\🚀🐱👤\\\\\\\\\'\'\'\\\\\\\\🚀🐱👤\\\\\\\\🚀🐱👤\\\\\'\'\'\'\'"}')"#;r#"{"test":"don\\🚀🐱👤\\'t forget to escape me!🚀🐱👤","te🚀🐱👤st2":"don't forget to escape me!","test3":"\\🚀🐱👤\\\\'''\\\\🚀🐱👤\\\\🚀🐱👤\\'''''"}"#.into()let result = r#"JSON.parse('{"test":"don\\\\🚀🐱👤\\\\\'t forget to escape me!🚀🐱👤","te🚀🐱👤st2":"don\'t forget to escape me!","test3":"\\\\🚀🐱👤\\\\\\\\\'\'\'\\\\\\\\🚀🐱👤\\\\\\\\🚀🐱👤\\\\\'\'\'\'\'"}')"#;/**
apiKey: 'must-not-enter-agent-input',
input: { ...previewInput(), apiKey: 'must-not-enter-agent-input' },apiKey: 'existing-secret-value',
apiKey: 'existing-secret-value',
apiKey: 'existing-secret-value',
.release-notes.md
.nojekyll
.cargo_vcs_info.json
Gates applied: critical_finding, no_behavioural_pass.
0d9c463b4d09full audit observations/trust-audit/mcp-server/tenney95__ai-canvas-tauri.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 0d9c463b4d09 | BLOCK | F | 42 | first audit |
Questions
What is the AI-Canvas-tauri MCP server?
Local-first AI canvas for visual workflows, AI short drama, image/video generation, storyboarding and asset management. ComfyUI, AI agents, MCP & Blender. 本地优先 AI 画布:AI短剧、AI资产管理、图像/视频生成、分镜制作与视频剪辑。
What tools does AI-Canvas-tauri expose?
46 in total: 46 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is AI-Canvas-tauri safe to connect to an agent?
No — not without reading the findings first. The audit graded it F (42/100) and found 6 critical or high issues in the source. Each one is listed on this page with the file and line it is on.
What credentials does AI-Canvas-tauri need?
No credential environment variables were found in its source, so it appears to need none.
How does AI-Canvas-tauri run?
It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on npm as ai-canvas-tauri at 0.10.2.
How current is this page?
The grade is for one exact copy of the source (0d9c463b4d09), read on 2026-10-08. The repository is watched and re-audited when it changes.