Critical-risk tools in Orgo MCP Server
3 of the 28 tools in Orgo MCP Server are classified as critical risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at critical risk
-
orgo_delete_computerDestructivePermanently delete a computer and all its data. Cannot be undone. Use only when explicitly instructed to remove a VM; for transient bad states, prefer
-
orgo_delete_workspaceDestructivePermanently delete a workspace and all of its computers. Cannot be undone. Use only when explicitly instructed to clean up — this removes every computer inside; prefer deleting ...
-
orgo_restart_computerDestructiveRestart a computer. Useful for recovering from unresponsive states. Use when commands hang, the VM is in a bad state, or after kernel/system config changes that need a boot. Des...
Attacks that target this class
Critical-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.