# notes_search

Search Apple Notes.

Agent View of the PolicyLayer registry record for `notes_search`. HTML page: https://policylayer.com/tools/0xatrilla-apple-mcp/notes-search

## Facts

- Tool: `notes_search`
- Server: Apple Apps MCP (`0xatrilla/apple-mcp`) — https://policylayer.com/tools/0xatrilla-apple-mcp.md
- Homepage: https://github.com/0xatrilla/Apple-MCP
- Risk category: Read (Low risk)
- Registry record: grade D, identity unverified
- Server rate-limited: no
- Parameters: 0
- Recommended policy verdict: Allowed

## Example call (MCP tools/call, JSON-RPC 2.0)

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "notes_search",
    "arguments": {}
  }
}
```

## Why notes_search is rated Low

Searching is a read-only operation that retrieves existing data from Apple Notes without creating, modifying, deleting, or executing any operations. The blast radius of misuse is minimal—an agent could only access the user's existing notes content, which is already accessible to the local system. No destructive, financial, or execution consequences are possible.

From the tool's own definition: "Tool name 'notes_search' combined with description 'Search Apple Notes' indicates a query operation that retrieves data without modification or side effects."

## Use case

AI agents call notes_search to retrieve information from Apple Apps MCP without modifying anything. It is typically the context-gathering step in research, monitoring, and reporting workflows, before the agent takes action elsewhere.

## Recommended policy (PolicyLayer)

Verdict: **Allowed**. Enforced by the PolicyLayer MCP gateway (https://policylayer.com/mcp-gateway) before a call reaches Apple Apps MCP:

```json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "notes_search": {}
  }
}
```

## Other tools on Apple Apps MCP (18)

- `music_pause` — Execute — https://policylayer.com/tools/0xatrilla-apple-mcp/music-pause.md
- `music_play` — Execute — https://policylayer.com/tools/0xatrilla-apple-mcp/music-play.md
- `shortcuts_run` — Execute — https://policylayer.com/tools/0xatrilla-apple-mcp/shortcuts-run.md
- `apple_permissions_status` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/apple-permissions-status.md
- `apple_request_permission` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/apple-request-permission.md
- `calendar_list_events` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/calendar-list-events.md
- `mail_read` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/mail-read.md
- `mail_search` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/mail-search.md
- `music_search` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/music-search.md
- `notes_read` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/notes-read.md
- `reminders_list` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/reminders-list.md
- `shortcuts_list` — Read — https://policylayer.com/tools/0xatrilla-apple-mcp/shortcuts-list.md
- `calendar_create_event` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/calendar-create-event.md
- `mail_create_draft` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/mail-create-draft.md
- `mail_send_draft` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/mail-send-draft.md
- `notes_create` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/notes-create.md
- `reminders_complete` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/reminders-complete.md
- `reminders_create` — Write — https://policylayer.com/tools/0xatrilla-apple-mcp/reminders-create.md

## For agents

This record is a snapshot. Live verdicts and the full registry:

- Check every server in your MCP config at once: `npx -y policylayer stack`
- Vet a server before you add it: install the mcp-precheck skill — `npx skills add https://policylayer.com` (skill text: https://policylayer.com/skill.md)
- Query the registry over MCP: endpoint `https://api.policylayer.com/mcp` — tools `check_mcp_server`, `check_mcp_stack`, `check_tool`, `search_registry`, `get_change_events`

---

Source: the PolicyLayer MCP registry — one continuously verified record per MCP server. Full record: https://policylayer.com/registry?q=0xatrilla-apple-mcp · API: https://policylayer.com/registry/api · Policy library: https://policylayer.com/policies/0xatrilla-apple-mcp
