High-risk tools in Aidemd Mcp
4 of the 9 tools in Aidemd Mcp are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
aide_brainExecuteOn-demand brain entry-point tool. Call this when you need to reach the brain mid-task — do NOT call it on every /aide boot. Boot-time brain precondition state is already reporte...
-
aide_infoExecuteBoot-time reporter called by the orchestrator at startup. Returns two independent top-level fields that the orchestrator must branch on separately: **`outdated` (array of stale...
-
aide_initExecuteBootstrap the AIDE development environment into a project. Returns structured JSON for agent consumption — not prose. The tool uses a two-call pattern for progressive disclosur...
-
aide_upgradeExecuteCompare the AIDE methodology artifacts in this project against the canonical versions and return structured JSON results grouped by category. Use this when the user asks to upda...
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.