High-risk tools in Sidearm
2 of the 19 tools in Sidearm are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
navigate_uiExecute 4/5Look up how to perform an action in the Sidearm dashboard UI. Returns step-by-step instructions for dashboard operations such as uploading media, running searches, managing API ...
-
run_algorithmExecute 4/5Run one or more named algorithms on media. Provide algorithm IDs (from list_algorithms) and either a public media_url or base64-encoded media content. For text, use the text par...
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.
More on Sidearm
Enforce policy on Sidearm
One command generates a policy scaffold for every server in your MCP config.
npx -y @policylayer/intercept init