High-risk tools in AIquila — Nextcloud MCP Server
9 of the 295 tools in AIquila — Nextcloud MCP Server are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
aiquila_testExecuteTest AIquila Claude API integration with a simple prompt
-
enable_appExecuteEnable a disabled Nextcloud app. Requires admin privileges
-
extract_archiveExecuteExtract a zip archive in Nextcloud into a destination folder. Runs server-side.
-
generate_imageExecuteGenerate an image from a text prompt using Nextcloud
-
install_appExecuteInstall a Nextcloud app from the App Store via occ app:install
-
mail_send_messageExecuteSend an email message through Nextcloud Mail. Requires an account ID and recipient addresses.
-
process_textExecuteSubmit a text-processing task to Nextcloud
-
run_occExecuteExecute an allowlisted Nextcloud OCC command on the server and return the output.
-
run_setup_checksExecuteRun Nextcloud setup checks to verify system configuration (security, performance, PHP modules, etc.). Requires admin privileges
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.