Critical-risk tools in Mealie MCP Server
14 of the 93 tools in Mealie MCP Server are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
delete_categoryDestructiveDelete a specific category.
-
delete_commentDestructiveDelete a comment from a recipe.
-
delete_cookbookDestructiveDelete a specific cookbook. This does not delete the recipes in the cookbook.
-
delete_foodDestructiveDelete a specific food.
-
delete_labelDestructiveDelete a specific label.
-
delete_mealplanDestructiveDelete a mealplan entry.
-
delete_recipeDestructiveDelete a recipe permanently.
-
delete_shopping_listDestructiveDelete a specific shopping list.
-
delete_shopping_list_itemDestructiveDelete a specific shopping list item.
-
delete_shopping_list_items_bulkDestructiveDelete multiple shopping list items at once.
-
delete_tagDestructiveDelete a specific tag.
-
delete_toolDestructiveDelete a specific recipe tool.
-
delete_unitDestructiveDelete a specific measurement unit.
-
remove_recipe_from_shopping_listDestructiveRemove a recipe's ingredients from a shopping list.
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.