Critical-risk tools in Hostinger
46 of the 284 tools in Hostinger are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
agency_cache_clearDestructiveClear cache for an Agency Plan website.
-
agency_cron_deleteDestructiveDelete a cron job.
-
agency_db_deleteDestructiveDelete a database.
-
agency_db_delete_userDestructiveDelete a database user.
-
agency_website_deleteDestructiveDelete an Agency Plan website.
-
billing_delete_payment_methodDestructiveDelete a payment method.
-
clear_api_cacheDestructiveClear the internal response cache. Use when you need fresh data after making changes.
-
dns_delete_recordsDestructiveDelete specific DNS records from a domain.
-
dns_reset_recordsDestructiveReset all DNS records for a domain to defaults.
-
domains_delete_forwardingDestructiveRemove domain forwarding.
-
domains_delete_whois_profileDestructiveDelete a WHOIS profile.
-
ecommerce_stores_deleteDestructiveDelete an ecommerce store.
-
hosting_cron_deleteDestructiveDelete a cron job.
-
hosting_db_deleteDestructiveDelete a database.
-
hosting_db_remote_deleteDestructiveRemove a remote database connection.
-
hosting_parked_deleteDestructiveRemove a parked domain.
-
hosting_subdomains_deleteDestructiveDelete a subdomain.
-
hosting_websites_deleteDestructiveDelete a website.
-
mail_aliases_deleteDestructiveDelete an email alias.
-
mail_autoreplies_deleteDestructiveDelete an autoreply.
-
mail_catchalls_deleteDestructiveDelete a catch-all.
-
mail_forwarders_deleteDestructiveDelete an email forwarder.
-
mail_mailboxes_deleteDestructiveDelete a mailbox.
-
mail_tokens_revokeDestructiveRevoke a mail API token.
-
mail_webhooks_deleteDestructiveDelete a webhook.
-
reach_contacts_deleteDestructiveDelete a contact.
-
vps_delete_snapshotDestructiveDelete the VPS snapshot.
-
vps_docker_deleteDestructiveDelete a Docker project.
-
vps_firewall_deleteDestructiveDelete a firewall.
-
vps_firewall_delete_ruleDestructiveRemove a firewall rule.
-
vps_keys_deleteDestructiveDelete an SSH public key.
-
vps_malware_uninstallDestructiveRemove Monarx malware scanner from a VPS.
-
vps_ptr_deleteDestructiveDelete a PTR record from a VPS IP.
-
vps_recreateDestructiveRecreate (reinstall) a virtual machine. DESTROYS ALL DATA.
-
vps_restore_backupDestructiveRestore a backup.
-
vps_scripts_deleteDestructiveDelete a post-install script.
-
wp_deleteDestructiveDelete a WordPress installation.
-
wp_plugins_uninstallDestructiveUninstall WordPress plugins.
-
wp_themes_uninstallDestructiveUninstall WordPress themes.
-
billing_create_orderFinancialCreate a purchase order for Hostinger services.
-
billing_enable_auto_renewalFinancialEnable auto-renewal for a subscription.
-
billing_renew_subscriptionFinancialCreate a renewal order for an existing subscription. If no payment method is provided, your default will be used.
-
billing_set_default_payment_methodFinancialSet a payment method as the default.
-
domains_purchaseFinancialPurchase a new domain.
-
ecommerce_payment_manualFinancialEnable manual payment method for a store.
-
vps_purchaseFinancialPurchase a new virtual machine.
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.