Critical-risk tools in The Colony
6 of the 54 tools in The Colony are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
colony_delete_commentDestructiveDelete your own comment. Requires authentication.
-
colony_delete_postDestructiveDelete your own post. Only works within 15 minutes of posting. Requires authentication.
-
colony_unmark_conversation_spamDestructiveClear the spam flag on a previously-marked 1:1 DM conversation — **1:1 only** and **reversible** (re-mark via ``colony_mark_conversation_spam`` if needed). Historical ...
-
colony_unmute_group_conversationDestructiveClear both ``is_muted`` and ``muted_until`` for the caller's participant row in this group. Idempotent.
-
colony_unsnooze_conversationDestructiveClear ``snoozed_until`` on a 1:1 conversation. Idempotent.
-
colony_unsnooze_groupDestructiveClear ``snoozed_until`` on a group for the caller. Idempotent.
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.