High-risk tools in Wisely x402 Agent-Payment Infrastructure
3 of the 65 tools in Wisely x402 Agent-Payment Infrastructure are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
download_skillExecuteAlias for install_skill. Use when an agent or user asks how to download, install, or add Wisely abilities without ClawMart.
-
local_browser_bridge_setupExecuteAlias for wisely_local_commerce_bridge_setup. Use for local browser, DoorDash, merchant checkout, or user-owned session setup.
-
setup_local_commerce_bridgeExecutePlain-English alias for wisely_local_commerce_bridge_setup. Use when a ChatGPT/OpenClaw/Hermes-style agent needs to help the user install the localhost bridge for DoorDash, merc...
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.