Hwp

31 tools. 18 can modify or destroy data without limits.

4 destructive tools with no built-in limits. Policy required.

Last updated:

18 can modify or destroy data
13 read-only
31 tools total

Community server · catalogue entry verified 11/06/2026

How to control Hwp ↓

Read (13) Write / Execute (14) Destructive / Financial (4)
Critical Risk

18 of Hwp's 31 tools can modify, destroy, or commit something on every call — and an agent calls them with no built-in limits.

PolicyLayer is an MCP gateway — it sits between your AI agents and Hwp, and nothing reaches the server without passing your rules. These are the rules we recommend:

Deny destructive operations
{
  "delete_hwp_image": {
    "deny_if": [
      {
        "conditions": [],
        "on_deny": "Blocked by default. Requires approval."
      }
    ]
  }
}

Destructive tools should never be available to autonomous agents without human approval.

Rate limit write operations
{
  "append_hwp_paragraph": {
    "limits": [
      {
        "counter": "append_hwp_paragraph_per_hour",
        "window": "hour",
        "max": 30,
        "scope": "grant"
      }
    ]
  }
}

Prevents bulk unintended modifications from agents caught in loops.

Cap read operations
{
  "extract_hwp_images": {
    "limits": [
      {
        "counter": "extract_hwp_images_per_minute",
        "window": "minute",
        "max": 60,
        "scope": "grant"
      }
    ]
  }
}

Controls API costs and prevents retry loops from exhausting upstream rate limits.

  1. Create a free account and register Hwp — nothing to install.
  2. Add these rules — paste them, or build them visually. Tune the limits to your setup.
  3. Point your MCP client (Claude, Cursor, anything) at your gateway URL.
ENFORCE POLICY ON HWP →

Free to start. No card required.

WRITE 14 tools
Write append_hwp_paragraph Append a new paragraph to the end of an .hwpx document body. Clones the last paragraph Write append_hwp_table_column Append a new column to the Nth table in an .hwpx. Write append_hwp_table_row Append a new row to the Nth table (0-based) in an .hwpx. Write apply_hwp_paragraph_style Apply paragraph formatting (alignment·indent·line_spacing) to the Nth paragraph in an .hwpx. Adds a new paraPr Write apply_hwp_text_style Apply formatting (color/bold/italic/underline/font_size) to the first run that contains target_text. Adds a ne Write insert_hwp_image Insert a new image into an .hwpx — adds the file to BinData/, registers it in content.hpf, and appends a parag Write insert_hwp_table Insert a real OWPML table at the end of an .hwpx body (proper <hp:tbl>/<hp:tr>/<hp:tc>). headers and rows are Write merge_hwp_cells_horizontal Merge horizontal cells in a row of a table by setting colSpan on the first cell and removing the absorbed cell Write merge_hwp_cells_vertical Merge vertical cells across rows in a single column by setting rowSpan on the first cell and removing absorbed Write replace_hwp_image Replace an embedded image inside an .hwpx by overwriting its BinData/ ZIP entry with new file contents. Write replace_hwp_text Find and replace text in an HWPX file. v0.2: only .hwpx is supported as input/output. Args: file_path, old_tex Write set_hwp_cell_text Replace a single cell Write set_hwp_field_value Set a Hancom field Write set_hwp_paragraph_text Replace the entire text of the Nth paragraph (0-based) in an .hwpx body with new text. The paragraph attribute

Other MCP servers with similar tools — same risk classification, starter policies for each.

Can an AI agent delete data through the Hwp MCP server? +

Yes. The Hwp server exposes 4 destructive tools including delete_hwp_image, delete_hwp_paragraph, delete_hwp_table_column. These permanently remove resources with no undo. PolicyLayer blocks destructive tools by default so they never reach the upstream server.

How do I prevent bulk modifications through Hwp? +

The Hwp server has 14 write tools including append_hwp_paragraph, append_hwp_table_column, append_hwp_table_row. Set a rate limit in your policy -- for example, 10 calls per hour prevents an agent from making more than 10 modifications per hour. PolicyLayer enforces this at the gateway, before calls reach Hwp.

How many tools does the Hwp MCP server expose? +

31 tools across 3 categories: Destructive, Read, Write. 13 are read-only. 18 can modify, create, or delete data.

How do I enforce a policy on Hwp? +

Register the Hwp MCP server in PolicyLayer, apply the suggested rules above (adjust the limits to your use case), and point your AI client at the PolicyLayer proxy URL instead of the server directly. Your agents keep the same tools; PolicyLayer evaluates every call against policy before it executes. Nothing to install, live in minutes.

Enforce policy on every Hwp tool call.

Deterministic rules across all 31 Hwp tools. Per-identity grants. Full audit log. Live in minutes. Nothing to install.

Free to start. No card required.

31 Hwp tools catalogued and risk-classified — across an index of 42,500+ MCP servers.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.