修改数据源
AI agents use UpdateDataSource to create or update resources in Alibabacloud Dataworks — usually the action step of a workflow, after the agent has gathered context. Every call changes real data in your Alibabacloud Dataworks environment.
| Parameter | Type | Required | Description |
|---|---|---|---|
Id | string | number | Yes | 数据源ID,数据源的唯一标识符 |
ProjectId | number | Yes | DataWorks项目空间ID |
Description | string | — | 数据源描述信息,长度不超过3000个字符 |
ConnectionProperties | string | Yes | 数据源具体连接配置信息,包括连接地址、访问身份、环境信息等。数据源环境EnvType信息是此对象的成员属性,包括-Dev(开发环境)-Prod(生产环境)不同类型的数据源在不同的配置模式(ConnectionPropertiesMode)下具有不同的属性信息规范,请参考[数据源连接信息ConnectionPropert |
ConnectionPropertiesMode | string | — | 数据源添加的类别,不同type下会有不同的子类型,对应有不同的参数约束,场景举例:- InstanceMode:实例模式。- UrlMode:连接串模式 |
Parameters from the server's own tool schema.
An AI agent can call UpdateDataSource faster than any human can review — one bad instruction and it creates or modifies resources in Alibabacloud Dataworks by the hundred, each call as confident as the last.
Attacks that exploit this kind of access
修改数据源. It is categorised as a Write tool in the Alibabacloud Dataworks MCP Server, which means it can create or modify data. Consider rate limits to prevent runaway writes.
UpdateDataSource accepts 5 parameters: Id, ProjectId, Description, ConnectionProperties, ConnectionPropertiesMode. Required: Id, ProjectId, ConnectionProperties. The full parameter table on this page comes from the server's own tool schema.
Register the Alibabacloud Dataworks MCP server in PolicyLayer and add a rule for UpdateDataSource: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Alibabacloud Dataworks. Nothing to install.
UpdateDataSource is a Write tool with medium risk. Write tools should be rate-limited to prevent accidental bulk modifications.
Yes. Add a rate_limit block to the UpdateDataSource rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.
Set action: deny in the PolicyLayer policy for UpdateDataSource. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.
UpdateDataSource is provided by the Alibabacloud Dataworks MCP server (alibabacloud-dataworks-mcp-server). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.