Critical-risk tools in Gitlab Mcp
25 of the 215 tools in Gitlab Mcp are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
cancel_pipeline_jobDestructiveCancel a running pipeline job
-
delete_branchDestructiveDelete branch from project
-
delete_draft_noteDestructiveDelete a draft note
-
delete_group_variableDestructiveDelete a CI/CD variable from a group
-
delete_group_wiki_pageDestructiveDelete a wiki page from a group
-
delete_issueDestructiveDelete an issue
-
delete_issue_emoji_reactionDestructiveRemove an emoji reaction from an issue
-
delete_issue_linkDestructiveDelete an issue link
-
delete_issue_note_emoji_reactionDestructiveRemove an emoji reaction from an issue note. Pass discussion_id for discussion thread replies.
-
delete_labelDestructiveDelete a label from a project
-
delete_merge_request_discussion_noteDestructiveDelete a discussion note on a merge request
-
delete_merge_request_emoji_reactionDestructiveRemove an emoji reaction from a merge request
-
delete_merge_request_noteDestructiveDelete an existing merge request note
-
delete_merge_request_note_emoji_reactionDestructiveRemove an emoji reaction from a merge request note. Pass discussion_id for discussion thread replies.
-
delete_milestoneDestructiveDelete a milestone
-
delete_project_variableDestructiveDelete a CI/CD variable from a project
-
delete_releaseDestructiveDelete a release (does not delete the tag)
-
delete_tagDestructiveDelete a repository tag
-
delete_wiki_pageDestructiveDelete a wiki page from a project
-
delete_work_item_emoji_reactionDestructiveRemove an emoji reaction from a work item
-
delete_work_item_note_emoji_reactionDestructiveRemove an emoji reaction from a work item note (comment, thread, or thread reply)
-
omg_clear_stateDestructiveClear state for a given OMG mode or all modes
-
omg_delete_memoryDestructiveDelete a project memory entry by key
-
purge_dependency_proxy_cacheDestructiveSchedule purge of all cached dependency proxy blobs for a group
-
unprotect_branchDestructiveRemove protection from a previously protected branch
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.