Critical-risk tools in Eka EMR
2 of the 17 tools in Eka EMR are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
archive_patientDestructive 4/5Archives a patient profile. Recommended Usage: Use to mark a patient profile as archived Do not use for permanently deleting patient data or creating/updating profiles. Trigge...
-
cancel_appointmentDestructive 4/5Cancel an appointment. When to Use This Tool Use this tool when the user explicitly wants to cancel an appointment. This action should be performed only after confirming the co...
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.
More on Eka EMR
Enforce policy on Eka EMR
One command generates a policy scaffold for every server in your MCP config.
npx -y @policylayer/intercept init