High-risk tools in Ncp
62 of the 275 tools in Ncp are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
applyExecuteExecute Terraform apply
-
apply_manifestExecuteApply Kubernetes manifest to cluster
-
build_imageExecuteBuild Docker image from Dockerfile
-
build_jobExecuteTrigger Jenkins job build
-
bulk_operationsExecutePerform bulk operations on Elasticsearch
-
click_elementExecuteClick on a web element
-
cloneExecuteClone Git repository
-
connectExecuteConnect to mysql-api database
-
consumeExecuteConsume messages from Kafka topic
-
create_completionExecuteCreate OpenAI completion
-
create_contextExecuteCreate a new browser context
-
create_imageExecuteGenerate image with DALL-E
-
create_predictionExecuteCreate model prediction
-
create_videoExecuteCreate Loom video
-
deployExecuteDeploy using aws-ec2-api
-
deploy_projectExecuteDeploy project to Vercel
-
deploy_serverExecuteDeploy Vultr server instance
-
deploy_siteExecuteDeploy site to Netlify
-
execExecuteExecute shell command
-
exec_asyncExecuteExecute shell command asynchronously
-
executeExecuteExecute gitlab-api-v4 command
-
execute_cqlExecuteExecute CQL query
-
execute_queryExecuteExecute SQL query on PlanetScale database
-
find_elementExecuteFind web element using various strategies
-
generate_imageExecuteGenerate image with Stable Diffusion
-
generate_renditionExecuteGenerate image rendition using Adobe APIs
-
inferenceExecuteRun inference on Hugging Face model
-
installExecuteInstall npm packages
-
lambda_invokeExecuteInvoke a Lambda function
-
navigate_pageExecuteNavigate to a web page
-
pauseExecutePause job (stops future executions).
-
planExecuteExecute Terraform plan
-
produceExecuteProduce message to Kafka topic
-
publishExecutePublish message to RabbitMQ exchange
-
pushExecutePush changes to remote repository
-
queryExecuteExecute a SQL query on the SQLite database
-
query_nrqlExecuteExecute NRQL query
-
query_rangeExecuteExecute range PromQL query
-
query_soqlExecuteExecute SOQL query
-
read_queryExecuteExecute a SELECT query on the PostgreSQL database
-
resumeExecuteResume paused job.
-
runExecuteExecute MCP tool (format: mcp:tool). Provides suggestions if not found.
-
run_commandExecuteExecute Ansible ad-hoc command
-
run_containerExecuteRun Docker container
-
run_cypherExecuteExecute Cypher query on Neo4j database
-
run_planExecuteExecute Terraform plan
-
run_playbookExecuteExecute Ansible playbook
-
run_scriptExecuteRun npm script
-
scaleExecuteScale aws-ec2-api resources
-
scale_deploymentExecuteScale a deployment
-
scale_dynoExecuteScale Heroku dyno
-
send_keysExecuteSend keystrokes to an element
-
start_ec2_instanceExecuteStart an EC2 instance
-
start_sessionExecuteStart BrowserStack testing session
-
stop_containerExecuteStop a running Docker container
-
stop_ec2_instanceExecuteStop an EC2 instance
-
submit_jobExecuteSubmit job to Nomad cluster
-
take_screenshotExecuteTake a screenshot of the page
-
triggerExecuteTrigger an immediate execution of a scheduled job (manual run).
-
trigger_pipelineExecuteTrigger CircleCI pipeline
-
trigger_workflowExecuteTrigger GitHub Actions workflow
-
upExecuteDeploy Pulumi stack
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.