High-risk tools in Ui5
2 of the 10 tools in Ui5 are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
run_manifest_validationExecute 3/5Validates UI5 manifest file. After making changes, you should always run the validation again to verify that no new problems have been introduced.
-
run_ui5_linterExecute 3/5Run UI5 linter on a UI5 project to find and optionally fix UI5 related problems like the usage of deprecated API. After making changes, you should always run the linter again to...
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.
More on Ui5
Enforce policy on Ui5
One command generates a policy scaffold for every server in your MCP config.
npx -y @policylayer/intercept init