Critical-risk tools in WA MCP
6 of the 62 tools in WA MCP are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
wa_clear_chatDestructiveClear all messages in a chat. The chat remains but all messages are removed.
-
wa_delete_chatDestructiveDelete an entire chat for this account. This cannot be undone.
-
wa_delete_instanceDestructivePermanently delete a WhatsApp instance and all its data including auth state, messages, contacts, and queue. This action cannot be undone.
-
wa_delete_messageDestructiveDelete a message for everyone in the chat. Only messages sent by this instance can be deleted.
-
wa_group_remove_participantsDestructiveRemove members from a WhatsApp group.
-
wa_remove_profile_pictureDestructiveRemove the profile picture for a WhatsApp instance.
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.