Critical-risk tools in MIDAS Protocol
19 of the 44 tools in MIDAS Protocol are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
accept_betFinancialAccept an open bet (AGAINST side)
-
accept_negotiationFinancialAccept the current offer
-
book_and_payFinancialBook and pay for a service using a quote
-
borrowFinancialAccept a loan offer and receive funds
-
cancel_subscriptionFinancialCancel a recurring payment
-
counter_offerFinancialSend a counter-offer in an active negotiation
-
create_betFinancialCreate a bet with escrow
-
create_contractFinancialCreate a conditional contract with escrow
-
create_loan_offerFinancialCreate a loan offer with interest and collateral
-
create_subscriptionFinancialSet up a recurring payment
-
fulfill_conditionFinancialMark a condition as fulfilled
-
human_approve_negotiationFinancialApprove a negotiation exceeding the automatic threshold
-
reject_negotiationFinancialReject a negotiation
-
repay_loanFinancialMake a repayment on an active loan
-
send_paymentFinancialSend USDC to another agent on Base L2 (gas paid in USDC via Circle Paymaster). All payments are on-chain.
-
sign_contractFinancialSign a contract as counterparty to activate it
-
start_negotiationFinancialStart a negotiation with another agent
-
withdraw_usdcFinancialWithdraw USDC to an external Base network address
-
x402_payFinancialPay an external API or service via the x402 protocol (HTTP 402). MIDAS handles payment signing and settlement automatically using your Base wallet USDC.
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.