High-risk tools in IT Tools MCP Server
10 of the 119 tools in IT Tools MCP Server are classified as high risk. This page profiles those tools specifically, with recommended policy actions and the attack patterns that target them.
Every operation listed below is an action PolicyLayer recommends controlling at the transport layer. Open any tool to see the full profile, risk score, and YAML policy snippet.
Tools at high risk
-
curlExecuteMake HTTP requests to web endpoints. Example: GET request to an API or POST data to a server
-
test_regexExecuteTest regular expressions against text
-
decrypt_ansible_vaultExecuteDecrypt Ansible Vault encrypted text
-
digExecutePerform DNS lookup with dig command
-
evaluate_mathExecuteSafely evaluate mathematical expressions
-
generate_otpExecuteGenerate Time-based One-Time Password (TOTP) codes
-
hash_bcryptExecuteGenerate bcrypt hash or verify password against hash
-
pingExecuteTest network connectivity to a host. Example: ping google.com to check if it
-
sshExecuteConnect to a target via SSH
-
telnetExecuteTest TCP connectivity to a host and port
Attacks that target this class
High-risk tools in any server share these documented attack patterns. Each links to the full case and the defensive policy.