High-risk tools in Technitium MCP Secure
3 of the 39 tools in Technitium MCP Secure are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
dns_flush_cacheExecuteFlush the entire DNS cache. Forces all subsequent queries to be resolved fresh from upstream. Requires confirm=true to execute.
-
dns_install_appExecuteDownload and install a DNS app from the Technitium app store. Use dns_list_app_store to see available apps.
-
dns_update_blocklistsExecuteForce an immediate update of all configured block lists. Normally block lists update every 24 hours.
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.