1 tools. 1 can modify or destroy data without limits.
1 write tool that can modify data. Rate limits recommended.
Last updated:
Execute tools (Input) trigger processes with side effects. Builds, notifications, workflows — all fired without throttling.
1 tools across 1 categories: Execute. 0 are read-only. 1 can modify, create, or delete data.
One line change. Instead of running the PostgreSQL server directly, prefix it with Intercept: intercept -c postgres.yaml -- npx -y @@modelcontextprotocol/server-postgres. Download a pre-built policy from policylayer.com/policies/postgres and adjust the limits to match your use case.
Starter policies available for each. Same risk classification, same one-command setup.
Deterministic policy on every MCP tool call. Per-identity grants. Full audit log.