Critical-risk tools in Servicialo
14 of the 111 tools in Servicialo are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
agendas_deleteDestructiveDelete a public agenda permanently. Cascades to related sessions booked through this agenda, comments, and service configs. Requires confirm: true. Cannot be undone.
-
cierre_cerrar_orgDestructiveClose the organizational period. Requires ALL active clients with historialCompleto=true to be closed first. Freezes the period. Requires confirm: true.
-
cierre_eliminar_clienteDestructiveDelete (reopen) a client closing. Only allowed if the organizational period is not frozen. Requires confirm: true.
-
email_domain_deleteDestructiveRemove the configured email sending domain from the organization. This deletes it from both Resend and the database. The organization will revert to using the default Coordinalo...
-
portal_cancel_reschedule_requestDestructiveCancel a pending reschedule request (SessionRequest) on behalf of the client who proposed it — the client-side withdrawal in the bilateral loop (outcome=cancelled_by_client). Id...
-
portal_session_cancelDestructiveCancel a client's session on behalf of the client (client-initiated cancellation: cancelledBy=client). Allowed from scheduled/pending_confirmation/confirmed; rejects past sessio...
-
public_booking_cancelDestructiveCancel a public booking using the bookingToken. Only works for bookings in pending_confirmation, scheduled, or confirmed status. Optionally include a reason. Does NOT require an...
-
booking_cancelFinancialCancel an existing session. By default applies the org cancellation policy: the charge is computed from the no-charge/partial/full windows and, if the policy has autoApply, regi...
-
cierre_crear_clienteFinancialCreate a client monthly closing (immutable financial snapshot). Requires historialCompleto=true on the client. One closing per client per period. Requires confirm: true.
-
cierre_distribuir_utilidadesFinancialDistribute profits for a closed period. Freezes the current period and all prior open periods. Requires the period to be organizationally closed first. Requires confirm: true.
-
finance_create_cobroFinancialCreate a manual charge (cobro) for a client. Not linked to a sale/venta. Requires confirm: true.
-
finance_create_ventaFinancialCreate a service sale (venta) for a client. Optionally auto-creates a charge (cobro) depending on org configuration. Requires confirm: true.
-
finance_register_paymentFinancialRegister a manual payment against an existing charge (cobro). Updates cobro status automatically. Requires confirm: true.
-
finance_send_confirmationsFinancialSend pending confirmation digest to clients. Groups all pending_confirmation charges by client and sends a single message per client via WhatsApp or email. Creates confirmation ...
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.