High-risk tools in Gretl MCP
10 of the 12 tools in Gretl MCP are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
gretl_dataset_summaryExecuteopens a local dataset, returns summary statistics, and requires GUI opening by default.
-
gretl_gui_launchExecutelaunches the visible Gretl desktop GUI.
-
gretl_gui_versionExecutechecks Gretl GUI availability.
-
gretl_helpExecutereturns Gretl help for a command.
-
gretl_make_packageExecutebuilds `.gfn` or `.zip` function packages with `makepkg`.
-
gretl_olsExecuteopens a local dataset, estimates an OLS model, and requires GUI opening by default.
-
gretl_run_commandsExecuteruns raw Gretl command lines and requires GUI opening by default.
-
gretl_run_scriptExecuteruns a Gretl/Hansl script and requires GUI opening by default.
-
gretl_run_script_fileExecuteruns an existing local `.inp` file and requires GUI opening by default.
-
gretl_versionExecutechecks Gretl availability.
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.