Critical-risk tools in Cowork Bench
30 of the 433 tools in Cowork Bench are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
canvas_delete_announcementDestructiveDelete an announcement
-
canvas_delete_assignmentDestructiveDelete an assignment
-
canvas_delete_conversationDestructiveDelete a conversation
-
canvas_delete_courseDestructiveDelete or conclude a course
-
canvas_delete_quizDestructiveDelete a quiz
-
canvas_delete_quiz_questionDestructiveDelete a question from a quiz
-
delete_draftDestructiveDelete draft
-
delete_emailDestructiveDelete an email
-
delete_emailsDestructiveDelete multiple emails with improved ID synchronization
-
delete_entitiesDestructiveDelete multiple entities and their associated relations from the knowledge graph
-
delete_eventDestructiveDeletes an event from the calendar
-
delete_folderDestructiveDelete email folder
-
delete_footnote_from_documentDestructiveDelete a footnote from a Word document.
-
delete_footnote_robustDestructiveDelete footnote with comprehensive cleanup and orphan removal.
-
delete_observationsDestructiveDelete specific observations from entities in the knowledge graph
-
delete_pageDestructiveУдаляет страницу по id. Дочерние страницы (если есть) теряют ссылку на родителя.
-
delete_paragraphDestructiveDelete a paragraph from a document.
-
delete_rangeDestructiveDelete a range of cells and shift remaining cells.
-
delete_relationsDestructiveDelete multiple relations from the knowledge graph
-
delete_sheet_columnsDestructiveDelete one or more columns starting at the specified column.
-
delete_sheet_rowsDestructiveDelete one or more rows starting at the specified row.
-
delete_worksheetDestructiveDelete worksheet from workbook.
-
drop_databasesDestructiveDrop multiple databases in hr1c
-
drop_schemasDestructiveDrop multiple schemas from a database
-
drop_tablesDestructiveDrop multiple tables from a database schema
-
sequentialthinkingDestructiveA detailed tool for dynamic and reflective problem-solving through thoughts. This tool helps analyze problems through a flexible thinking process that can adapt and evolve. Each...
-
unprotect_documentDestructiveRemove password protection from a Word document.
-
woo_coupons_deleteDestructiveDelete a coupon
-
woo_orders_deleteDestructiveDelete an order
-
woo_products_deleteDestructiveDelete a product
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.