High-risk tools in WA MCP
6 of the 62 tools in WA MCP are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
wa_connect_instanceExecuteConnect a WhatsApp instance. For Baileys instances, this starts the WebSocket connection and generates a QR code for authentication.
-
wa_disconnect_instanceExecuteGracefully disconnect a WhatsApp instance. The session is preserved for reconnection.
-
wa_group_leaveExecuteLeave a WhatsApp group.
-
wa_reject_callExecuteReject an incoming voice or video call. The call ID is received via the whatsapp/call.received notification.
-
wa_restart_instanceExecuteDisconnect and reconnect a WhatsApp instance. Useful for recovering from errors.
-
wa_send_presenceExecuteSend a presence status (typing, recording, paused, available, unavailable) to a chat.
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.