High-risk tools in Lovie Company Formation MCP
15 of the 340 tools in Lovie Company Formation MCP are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
accounting_propose_schedulesExecuteScan a company's recent posted transactions and suggest accrual schedules (e.g. amortize a large annual prepaid over 12 months). Returns proposals only — nothing is created unti...
-
ads_insight_summarize_campaign_windowExecuteSummarizeCampaignWindow summarises one charge against the campaigns in its billing window. Results are cached per company + account + window + charge, so repeated panel opens do...
-
banking_refresh_owner_verificationExecuteRe-reads the identity-verification outcome for one beneficial owner on a banking application and records it. Idempotent. Does not start a verification and does not carry any of ...
-
banking_start_banking_applicationExecuteStartBankingApplication opens a business account application for a company. A company may have only one undecided application at a time; starting a second is refused rather tha...
-
cap_table_record_cap_table_investmentExecuteRecords one holding end-to-end: resolves or creates the stakeholder, then creates the holding with all derived fields, attaching or auto-creating a round for SAFE/Preferred. SAF...
-
cap_table_simulate_cap_table_exitExecuteComputes what every stakeholder takes home at ONE hypothetical exit valuation, running the liquidation-preference waterfall and converting SAFEs as if the exit were the price ro...
-
draft_paymentExecuteDraft a payment for human review: returns a canonical, ready-to-sign Mandate (body JSON + JCS hash) and a plain-language summary. Does NOT move money or run the pipeline — a hum...
-
equity_onboarding_startExecuteOpens a company's proof-of-formation intake so its cap table can be set up. Idempotent: a company has at most one open intake, and calling again returns the existing one rather ...
-
formation_run_election83b_remindersExecuteRunElection83bReminders runs the 83(b) reminder sweep (not-started nudges + deadline-relative sign/file reminders + late notice). Reviewer-only; also run in-process by the sched...
-
formation_start_formationExecuteTHE entry point for a new company formation — runs anonymously, no sign-in required. Call this DIRECTLY whenever the user wants to start, create, or form a company or formation....
-
kyc_start_kyc_inquiryExecuteStartKycInquiry creates a provider inquiry and returns the hosted flow URL. Idempotent within an open inquiry window. Exposed because the Mac app reaches the server only over M...
-
signature_reconcile_document_stateExecuteReconcileDocumentSignatureState re-runs the document-hub write-back for every envelope that is not voided, so the hub carries the signature state of envelopes created before the...
-
signature_run_remindersExecuteRunSignatureReminders sweeps every Lovie Sign envelope that is still awaiting signature — SAFEs and plain documents alike; Docusign envelopes are excluded because Docusign runs ...
-
trademark_run_clearanceExecuteRunClearance searches USPTO for conflicting marks across phonetic variants, screens the open web for unregistered use, and stores a snapshot report.
-
trademark_start_applicationExecuteStartApplication opens a draft application for a company.
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.