EXECUTE MCP TOOLS
Tools that trigger processes or run actions. High risk -- rate limits and argument validation recommended.
Severity: High severity →
Real-world attack patterns documented against execute-class MCP tools. Each links to the full case and the defensive policy.
browser_click browser_click browser_close browser_close browser_drag browser_drag browser_evaluate browser_evaluate browser_file_upload browser_file_upload browser_fill_form browser_fill_form browser_handle_dialog browser_handle_dialog browser_hover browser_hover browser_install browser_install browser_mouse_click_xy browser_mouse_click_xy browser_mouse_down browser_mouse_down browser_mouse_drag_xy browser_mouse_drag_xy + 339 more Every Playwright MCP tool, risk-classified, on the server page. dnscat_client dnscat_client execute_weevely_module execute_weevely_module generate_weevely_agent generate_weevely_agent identify_hash identify_hash john_prepare john_prepare launch_xsser_gui Launches the graphical user interface (GTK) for XSSer. manage_brew manage_brew manage_dirb_dictionaries manage_dirb_dictionaries manage_mounts manage_mounts manage_sliver_daemon manage_sliver_daemon manage_wpprobe manage_wpprobe monitor_fping Starts a continuous, long-running fping monitor against a target host. + 320 more Every Pentester-MCP tool, risk-classified, on the server page. acl_add_peer Connect to another MCP server (local or remote). acl_call_peer_tool Call a tool on a connected MCP peer. adb_command Run a command on an Android device via ADB. agent_graph_start Start a dependency-aware agent graph. Pass allowed_devices to choose the Yaver mesh pool and allowed_runners to constrain which runners remote node... agent_graph_stop Stop a running agent graph. android_app_install Install a selected Android app APK into Redroid. Arbitrary Play Store restore is intentionally not faked; provide apk_path or install manually. android_app_launch Launch an installed package in Redroid and return visible UI text plus whether it appears installed. android_app_query Launch/query a package in Redroid and report whether visible UI contains query text, plus a needsUser hint for login/OTP handoff screens. android_lint Run Android lint checks. archive_extract Extract a zip or tar.gz archive. auth_dev_start Start a local auth server for development. Replaces Clerk ($25/mo), Auth0, WorkOS. auth_dev_stop Stop the local auth server. + 226 more Every Yaver tool, risk-classified, on the server page. foura_proxy Route an HTTP request through FourA's proxy pool with automatic retry across multiple proxies. Per-host proxy rating picks proxies most likely to s... query_database Execute SQL query. authenticate Log in to takehub. Opens a browser URL and waits for login to complete (up to 2 minutes). Returns once authenticated. complete_auth Wait for browser-based login to complete. Usually not needed — authenticate now waits automatically. Only call if authenticate timed out and you wa... regenerate_topic_summary Force a fresh regeneration of a topic's AI summary, ignoring the cache. Useful after new video responses come in. May take 15–30s while the transcr... swiftsign_create_embedded_url Mint a short-lived embedded signing URL for a recipient (30-minute expiry). Returns a url to embed plus its expiresAt. The envelope must already be... deploy_app Deploys an app to a VM and exposes it at a public https://<name>-<id>.redu.cloud URL (a random 8-char suffix is appended to <name> for uniqueness —... deploy_compose Deploys a MULTI-CONTAINER app — a repo that ships a docker-compose.yml / compose.yaml (app + its own db/redis/worker containers) — onto ONE VM via ... instance_action Start, stop, or reboot an instance. action must be START, STOP, REBOOT_SOFT, or REBOOT_HARD. prepare_upload Returns the LOCAL shell commands to package your working directory and upload it for an upload-mode deploy (no git, no PAT). Run them in the user's... scaffold_local OPTIONAL preflight: returns a podman-compose.yml + .env so the user can run the app (and a throwaway local Postgres) on THEIR machine before deploy... setup_agent_fleet Complete one-shot setup: validates prerequisites, creates a controller VM + worker VMs, auto-creates a public HTTPS URL on port 7070, seeds a start... + 175 more Every Mcp tool, risk-classified, on the server page. apply_antidetect_preset Apply an anti-detect preset and rebuild the context. check_checkbox check_checkbox clear_text clear_text click click evaluate evaluate fill fill go_back go_back go_forward go_forward hover hover intercept_route intercept_route navigate navigate press_key press_key + 164 more Every Playwright MCP Server tool, risk-classified, on the server page. ad_full_attack ad_full_attack adaptive_cmdi_test 自适应命令注入测试 adaptive_create_execution_context 创建自适应执行上下文 adaptive_execute_strategy 执行自适应策略 adaptive_intelligent_orchestration 智能编排多目标自适应攻击 adaptive_network_penetration 自适应网络渗透测试 - 智能化网络攻击。 adaptive_sqli_test 自适应SQL注入测试 - 智能检测和利用 adaptive_web_penetration 自适应Web渗透测试 - 智能化Web应用攻击。 adaptive_xss_test 自适应XSS测试 - 上下文感知的XSS检测 add_chain_step add_chain_step advanced_ctf_solver 高级CTF题目自动求解器 - 基于题目特征的智能化攻击策略。 advanced_web_security_assessment Execute advanced web application security assessment. + 164 more Every Kali Security MCP tool, risk-classified, on the server page. advanced_payload_generation advanced_payload_generation ai_generate_attack_suite Generate comprehensive attack suite with multiple payload types. ai_generate_payload ai_generate_payload ai_reconnaissance_workflow ai_reconnaissance_workflow ai_test_payload ai_test_payload ai_vulnerability_assessment ai_vulnerability_assessment airbase_ng airbase_ng aircrack_ng aircrack_ng aircrack_ng_analysis aircrack_ng_analysis airdecap_ng airdecap_ng aireplay_ng aireplay_ng airmon_ng airmon_ng + 163 more Every Nyxstrike tool, risk-classified, on the server page. csuite_analyze Run a C-Suite multi-perspective analysis on a business scenario. mastodon_action Perform a Mastodon action: mastodon_post, mastodon_read_timeline, mastodon_reply, mastodon_boost, mastodon_favorite, mastodon_search, mastodon_prof... slack_action Perform a Slack action: slack_send, slack_read, slack_search, slack_thread_reply, slack_channels, slack_react, slack_upload. text_transform Transform text (uppercase, lowercase, title case, slug, etc.). unclick_call Call any UnClick tool endpoint. Specify the endpoint ID and parameters. Use unclick_search or unclick_tool_info to discover endpoint IDs and requir... unclick_generate_qr Generate a QR code from text or a URL. Returns base64-encoded PNG or SVG. unclick_hash Compute a cryptographic hash (MD5, SHA1, SHA256, SHA512) of text. unclick_parse_csv Parse a CSV string into a JSON array of rows. unclick_transform_text Transform text case: upper, lower, title, sentence, camelCase, snake_case, kebab-case, PascalCase. urlscan_scan Submit a URL for scanning on urlscan.io. virustotal_scan_url Submit a URL for scanning on VirusTotal. ackermann Compute the Ackermann function A(m, n). + 153 more Every UnClick tool, risk-classified, on the server page. agentic_mandate_sandbox Simulate agent payment policies for tokenized A2A corridors: set spend caps, MCC allowlists, velocity throttles, and approval thresholds; run synth... allocate_ihb_interest IHB Interest Allocation: OpenChainGraph compute node (analytics_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports an AP2 ... amortize_asc606_commissions ASC 340-40 Commission Amortization: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exp... anchor_document_integrity Document Integrity & eIDAS Electronic Timestamp Anchor: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero P... apply_climate_scenario Climate Scenario Applicator (NGFS / Fit-for-55): OpenChainGraph compute node (model_governance). Runs deterministically in-browser; zero PII, zero ... build_226j_response_evidence_pack 226J Response Evidence Pack Builder: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Ex... build_agent_incident_record Agent Incident Record Composer: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports... build_agent_test_evidence Quarterly Agent Test Evidence Composer: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress.... build_agent_traffic_policy Agent-Traffic Acceptance Policy Builder: OpenChainGraph compute node (agent_guardrail_mandate). Runs deterministically in-browser; zero PII, zero e... build_ai_conformity_pack AI Act Conformity Pack Builder: OpenChainGraph compute node (model_governance). Runs deterministically in-browser; zero PII, zero egress. Exports a... build_ai_training_data_lineage_record AI Training-Data Lineage Record: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Export... build_ai_workpaper_record AI-Tool-Usage Workpaper Record: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports... + 134 more Every Ainumbers Mcp Apps tool, risk-classified, on the server page. build_image Build a Docker image from a Dockerfile create_container Create a new Docker container pull_image Pull a Docker image run_container Run an image in a new Docker container (preferred over `create_container` + `start_container`) start_container Start a Docker container stop_container Stop a Docker container startPauseOrKill startPauseOrKill build_image Build a Docker image from a Dockerfile or build context directory. The path should contain a Dockerfile or point to a directory with one. Use tag t... check_health Run a health probe against a container by ID or name. Supports HTTP (checks status code), TCP (checks port open), and exec (runs command inside con... compose_restart Restart Docker Compose services defined by docker-compose.yml at path. Restart specific services or the entire stack. Unlike stop+start, this prese... compose_up Start services defined in a docker-compose.yml file create_container Create a new Docker container from an image + 122 more Every Docker tool, risk-classified, on the server page. agent_pool Manage a fixed-size warm pool of pre-spawned agents to skip cold-start cost on bursty workloads. Use when native Task is wrong because (a) you have... agent_spawn Spawn a subagent agentdb_consolidate Run memory consolidation to promote entries across tiers and compress old data Use when generic memory_* tools are wrong because you need AgentDB-s... agentdb_route Route a task via AgentDB SemanticRouter or LearningSystem recommendAlgorithm Use when generic memory_* tools are wrong because you need AgentDB-spe... agentdb_session-start Start a session with ReflexionMemory episodic replay Use when generic memory_* tools are wrong because you need AgentDB-specific controllers (HNSW ... autopilot_disable Disable autopilot. Agents will be allowed to stop even if tasks remain. Use when running long-horizon goals that should resume automatically across... autopilot_enable Enable autopilot persistent completion. Agents will be re-engaged when tasks remain incomplete. Use when running long-horizon goals that should res... autopilot_learn Discover success patterns from past task completions. Requires AgentDB for full functionality. Use when running long-horizon goals that should resu... autopilot_predict Predict the optimal next action based on current state and learned patterns. Use when running long-horizon goals that should resume automatically a... benchmark_run Execute performance benchmarks (V2 compatible). Deprecated: Use system/metrics instead. browser_back Navigate back in browser history Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows wi... browser_check Check a checkbox Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows with cookie reuse,... + 113 more Every Ruflo tool, risk-classified, on the server page. agent_pool Manage a fixed-size warm pool of pre-spawned agents to skip cold-start cost on bursty workloads. Use when native Task is wrong because (a) you have... agent_spawn Spawn a subagent agentdb_consolidate Run memory consolidation to promote entries across tiers and compress old data Use when generic memory_* tools are wrong because you need AgentDB-s... agentdb_route Route a task via AgentDB SemanticRouter or LearningSystem recommendAlgorithm Use when generic memory_* tools are wrong because you need AgentDB-spe... agentdb_semantic-route Route an input via AgentDB SemanticRouter for intent classification Use when generic memory_* tools are wrong because you need AgentDB-specific con... autopilot_disable Disable autopilot. Agents will be allowed to stop even if tasks remain. Use when running long-horizon goals that should resume automatically across... autopilot_enable Enable autopilot persistent completion. Agents will be re-engaged when tasks remain incomplete. Use when running long-horizon goals that should res... autopilot_predict Predict the optimal next action based on current state and learned patterns. Use when running long-horizon goals that should resume automatically a... benchmark_run Execute performance benchmarks (V2 compatible). Deprecated: Use system/metrics instead. browser_back Navigate back in browser history Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows wi... browser_check Check a checkbox Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows with cookie reuse,... browser_click Click an element using ref (@e1) or CSS selector Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping... + 109 more Every Claude Flow tool, risk-classified, on the server page. executeBeaconConsoleAndWait Execute a beacon console command and wait for streamed console output. lintBeaconInterpreterC lintBeaconInterpreterC runBeaconInterpreterC Execute Beacon Interpreter C source using /execute/interpreter/pack. startCobaltStrikeWebsocketStreams Start the default Cobalt Strike WebSocket subscriptions. beacon_change_directory Change current directory on a beacon beacon_copy_file Copy a file on a beacon create_listener Create a new listener (HTTP, HTTPS, DNS, SMB, etc.) create_listener_dns Create a DNS listener create_listener_externalC2 Create an ExternalC2 listener create_listener_foreignHttp Create a Foreign HTTP listener create_listener_foreignHttps Create a Foreign HTTPS listener create_listener_http Create an HTTP listener + 105 more Every Cobalt Strike MCP Server tool, risk-classified, on the server page. browser_click Click an element on the page, before using the tool, use browser_evaluate Execute JavaScript in the browser console browser_form_input_fill Fill out an input field, before using the tool, Either browser_go_back Go back to the previous page browser_go_forward Go forward to the next page browser_hover Hover an element on the page, Either browser_navigate Navigate to a URL browser_new_tab Open a new tab browser_press_key Press a key on the keyboard browser_scroll Scroll the page browser_select Select an element on the page with index, Either browser_switch_tab Switch to a specific tab + 100 more Every Search tool, risk-classified, on the server page. container_start Start the Kali Linux Docker container. Must be called before running any commands. execute_command Execute a shell command inside the Kali Linux container. Use this to run security tools like nmap, sqlmap, hydra, nikto, gobuster, john, hashcat, d... aircrack_scan aircrack_scan amass_scan Execute amass with the provided parameters. apktool_decompile Execute Apktool APK decompiler. arachni_scan Execute arachni with the provided parameters. arjun_scan Execute arjun with the provided parameters. autorecon_scan autorecon_scan beef_exploit Execute BeEF browser exploitation framework. cewl_generate cewl_generate chkrootkit_scan Execute chkrootkit with the provided parameters. clamav_scan Execute clamav with the provided parameters. + 98 more Every Kali tool, risk-classified, on the server page. benchmark_models Run the same prompt against multiple LLM providers and compare responses. Returns side-by-side results with latency, token usage, and a summary. Us... bootstrap_parallel_agents Detect whether a target project repo has parallel agent infrastructure and, if not, scaffold everything needed. Scans for task coordination, role c... build_banking_packet Build a banker-readiness packet from the canonical company packet. build_company_profile_starter Build a starter PitchBook/Crunchbase-like company profile. build_founder_operating_model Build the complete founder operating model: execution order, queue topology, packet routing, source trust policy, progression rubric, and benchmark... build_research_digest Generate a digest of new (unseen) articles from RSS feeds. Compares against previously seen articles via SQLite. Returns only new items grouped by ... build_shared_context_subscription Build the exact pull/subscription manifest an agent client should use to watch a packet or packet scope. build_shared_context_subscription_manifest Build a filtered snapshot/events/pull manifest for one peer, packet class, producer, scope, or subject so clients can subscribe to only relevant sh... build_submission_export Build a generic submission export from the canonical company packet. build_temporal_graph Build a temporal relationship graph for an entity. burst_capture Capture N sequential screenshots at fixed intervals using Playwright. call_driver_tool Invoke a tool on a connected MCP driver. This proxies the call to the external MCP server (e.g. playwright-mcp or mobile-mcp) and returns the resul... + 98 more Every Nodebench tool, risk-classified, on the server page. clear_console Clear the browser console.
Returns:
Status of the clear operation connect_to_browser Connect to an existing Chrome instance with remote debugging enabled.
Establishes a connection to a Chrome browser that's already running ... evaluate_in_all_frames Execute JavaScript code in all frames/iframes of the page.
Args:
code: JavaScript code to execute
Returns:
... execute_javascript Execute JavaScript code in the browser context.
Args:
code: JavaScript code to execute
Returns:
Result of... focus_element Focus a DOM element.
Args:
node_id: Node ID of the element to focus
Returns:
Success status of the focus ... inspect_console_object Inspect a JavaScript object or expression in detail.
Args:
expression: JavaScript expression to inspect
Returns:
... navigate_to_url Navigate the connected browser to a specific URL.
Instructs the currently connected Chrome instance to navigate to the specified
U... override_storage_quota Override storage quota for a specific origin.
Args:
origin: Security origin to override quota for
quota_size_mb: N... start_chrome Start Chrome with remote debugging enabled and optionally establish connection.
Launches Chrome browser with DevTools Protocol debugging e... start_chrome_and_connect Start Chrome with debugging, connect, and navigate to URL in one step.
Convenience function that combines browser startup, connection esta... start_css_coverage_tracking Start tracking CSS rule usage for coverage analysis.
Returns:
Status of coverage tracking initialization track_indexeddb Enable or disable IndexedDB tracking for an origin.
Args:
origin: Security origin to track
enable: Whether to enab... + 95 more Every Chrome Devtools tool, risk-classified, on the server page. advanced_payload_generation advanced_payload_generation ai_generate_attack_suite Generate comprehensive attack suite with multiple payload types. ai_generate_payload ai_generate_payload ai_reconnaissance_workflow ai_reconnaissance_workflow ai_test_payload ai_test_payload ai_vulnerability_assessment ai_vulnerability_assessment amass_scan Execute Amass for subdomain enumeration with enhanced logging. angr_symbolic_execution angr_symbolic_execution api_fuzzer api_fuzzer arjun_parameter_discovery arjun_parameter_discovery arjun_scan arjun_scan arp_scan_discovery arp_scan_discovery + 94 more Every Hexstrike Ai tool, risk-classified, on the server page. git_checkout Switch branches in the repository git_checkout Switch branches or restore working tree files. Can checkout an existing branch, create a new branch, or restore specific files. git_rebase Rebase commits onto another branch. Reapplies commits on top of another base tip for a cleaner history. add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. audit Runs cargo audit and returns structured vulnerability data. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). + 91 more Every Git tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. audit Runs cargo audit and returns structured vulnerability data. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. + 89 more Every Build tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. audit Runs cargo audit and returns structured vulnerability data. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. + 88 more Every Make tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using + 88 more Every Test tool, risk-classified, on the server page. wavexis_act wavexis_act wavexis_activate_tab Activate (focus) a tab by its ID. wavexis_animation_pause Pause an animation by ID. wavexis_animation_play Play/resume an animation by ID. wavexis_animation_set_rate Set the playback rate of an animation. wavexis_back Navigate back in browser history. wavexis_block_requests Block requests matching URL patterns. wavexis_bluetooth_adapter_state Set Bluetooth adapter state (powered on/off). wavexis_bluetooth_device_connect Emulate a Bluetooth device connection. wavexis_bluetooth_device_disconnect Stop Bluetooth emulation. wavexis_browser_context_create Create an isolated browser context within a session. wavexis_cast_start Start tab mirroring to a cast sink. + 88 more Every Wavexis tool, risk-classified, on the server page. github_cancel_workflow_run Cancel a running workflow. github_rerun_workflow Re-run a workflow. github_trigger_workflow github_trigger_workflow add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. audit Runs cargo audit and returns structured vulnerability data. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). + 86 more Every Github tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using + 86 more Every Cargo tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. audit Runs cargo audit and returns structured vulnerability data. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. + 86 more Every Http tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using + 86 more Every Python tool, risk-classified, on the server page. advanced_network_diagnostics Advanced network diagnostics and troubleshooting advanced_process_manager Advanced process management with filtering and bulk operations auto_optimize_system Automatically optimize system based on ML predictions automate_calculator Automate Calculator to perform calculations automate_notepad Automate Notepad actions (open, type, save, etc.) click_at_coordinates Click at specific screen coordinates click_image_if_found Find and click an image on the screen close_web_automation Close the web automation browser create_automation_workflow Create and execute a custom automation workflow create_function create_function drag_and_drop Drag from start coordinates to end coordinates encode_decode_base64 Encode or decode text using Base64 + 85 more Every Mcp Windows tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using + 84 more Every Npm tool, risk-classified, on the server page. dirb_scan Brute-force discover hidden directories and files on web servers with DIRB jwt_security_test Test JWT token for security vulnerabilities (none algorithm, weak secrets) nikto_scan Scan web servers for vulnerabilities and misconfigurations with Nikto nmap_scan Perform network scanning with Nmap to discover hosts, ports, and services nuclei_scan Fast vulnerability scanner using community templates with Nuclei retirejs_scan Scan for vulnerable JavaScript libraries with retire.js sqlmap_scan Test for SQL injection vulnerabilities with SQLMap testssl_scan Test SSL/TLS configuration and vulnerabilities with testssl.sh vpn_connect Connect to Mullvad VPN for anonymous security testing vpn_disconnect Disconnect from Mullvad VPN zap_scan Comprehensive web application security scanner using OWASP ZAP nikto_scan nikto_scan + 82 more Every Kali Linux MCP Server tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. biome-check Runs Biome check (lint + format) and returns structured diagnostics (file, line, rule, severity, message). bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using + 82 more Every Lint tool, risk-classified, on the server page. act Execute a natural language action. The AI will plan and perform multi-step operations in a single invocation, useful for transient UI interactions ... android_connect Connect to Android device via ADB. If deviceId not provided, uses the first available device. AndroidBackButton AndroidBackButton action, Trigger the system "back" operation on Android devices AndroidHomeButton AndroidHomeButton action, Trigger the system "home" operation on Android devices AndroidRecentAppsButton AndroidRecentAppsButton action, Trigger the system "recent apps" operation on Android devices CursorMove CursorMove action, Move the text cursor (caret) left or right within an input field or text area. Use this to reposition the cursor without selecti... DoubleClick DoubleClick action, Double click the element. Parameters: locate (object) - The element to be double clicked DragAndDrop DragAndDrop action, Pick up a specific UI element and move it to a new position (e.g., reorder a card, move a file into a folder, sort list items).... KeyboardPress KeyboardPress action, Press a key or key combination, like "Enter", "Tab", "Escape", or "Control+A", "Shift+Enter". Do not use this to type text.. ... Launch Launch action, Launch an Android app or URL. Parameters: uri (string) - App name, package name, or URL to launch. Prioritize using the exact packag... LongPress LongPress action, Long press the element. Parameters: locate (object) - The element to be long pressed; duration? (number) - Long press duration in... Pinch Pinch action, Perform a two-finger pinch gesture. Use direction "in" to pinch fingers together (zoom out), or "out" to spread fingers apart (zoom i... + 81 more Every Android tool, risk-classified, on the server page. add Runs add-package Runs dotnet add package to add a NuGet package and returns structured results. WARNING: may execute untrusted code. ansible-galaxy Installs or lists Ansible collections and roles from Galaxy or a requirements file. ansible-playbook Runs an Ansible playbook and returns structured play recap with per-host results. api Makes arbitrary GitHub API calls via apply Applies a Kubernetes manifest file. bazel Bazel build system operations: build, test, query, info, run, clean, fetch. bisect Binary search for the commit that introduced a bug. Returns structured data with action taken, current commit, remaining steps estimate, and result. black Runs Black code formatter and returns structured results (files changed, unchanged, would reformat). build Runs a build command and returns structured success/failure with errors and warnings. bundle-exec Executes a command in the context of the Gemfile bundle using bundle-install Installs Gemfile dependencies using + 80 more Every Go tool, risk-classified, on the server page. editor_launch Launch the Godot editor for a specific project. particle_start_emitting particle_start_emitting project_export project_export project_run Run the Godot project and capture output. project_stop Stop the currently running Godot project. open_in_godot Open a file in the Godot editor at a specific line (side-effect only). rescan_filesystem Trigger a full filesystem rescan in the Godot editor. Use after creating, deleting, or modifying files externally (e.g. from the terminal or anothe... run_scene Launch a scene in the Godot editor. By default the call BLOCKS until the editor flips to playing state (so the next get_errors / take_screenshot / ... send_input Synthesize an InputEvent and dispatch it to the running game via Input.parse_input_event. REQUIRES the game to be running with the MCPRuntime autol... stop_scene Stop the currently running scene in the Godot editor. Always stop the scene before editing code to avoid errors repeating every frame. wait Sleep server-side. Useful between input events to let the game process them. Capped at 30000ms / 30s. Pass either ms or seconds (ms wins if both gi... godot_execute_script Execute a GDScript in the Godot project context. + 78 more Every Godot tool, risk-classified, on the server page. mio_ai_audio_enhancer AI Audio Enhancer — Enhance audio — speech denoising or music mastering, depending on input. AI Studio run — dispatches to our AI workers (Modal). ... mio_ai_cartoon_filter AI Cartoon Filter — Transform photos into anime/cartoon style art using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run v... mio_ai_clip_maker AI Clip Maker — Extract the best short clips from long videos using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_document_summarizer AI Document Summarizer — Summarize long documents into key points using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run v... mio_ai_document_translator AI Document Translator — Translate text between 16 languages using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary b... mio_ai_face_enhancer AI Face Enhancer — Enhance and restore faces in photos using AI — sharpen details, fix blur, improve quality. AI Studio run — dispatches to our AI ... mio_ai_face_swap Face Swap — Swap faces between photos using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary by model and file size. ... mio_ai_headshot_generator AI Headshot Generator — Generate professional headshots from any photo. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_hum_to_song AI Hum to Song — Hum a melody, write lyrics, get a full song with vocals in your melody's key and tempo. Powered by MiOffice Song Engine.. AI Studi... mio_ai_image_generator AI Image Generator — Generate images from text descriptions using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary by... mio_ai_logo_generator AI Logo Generator — Generate professional logos from text descriptions. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_melody_to_music AI Melody to Music — Upload a clean single-instrument recording and AI generates instrumental music in your style. No vocals — for songs with vocal... + 74 more Every MiOffice — AI-Powered Workspace Studio tool, risk-classified, on the server page. click Clicks on the provided element drag Drag an element onto another element emulate Emulates various features on the selected page. evaluate_script Evaluate a JavaScript function inside the currently selected page. Returns the response as JSON
so returned values have to JSON-serializable. handle_dialog If a browser dialog was opened, use this command to handle it hover Hover over the provided element navigate_page Navigates the currently selected page to a URL. new_page Creates a new page performance_start_trace Starts a performance trace recording on the selected page. This can be used to look for performance problems and insights to improve the performanc... performance_stop_trace Stops the active performance trace recording on the selected page. press_key Press a key or key combination. Use this when other input methods like fill() cannot be used (e.g., keyboard shortcuts, navigation keys, or special... resize_page Resizes the selected page + 72 more Every Chrome DevTools MCP tool, risk-classified, on the server page. ad_asreproast Perform AS-REP Roasting to get hashes for accounts with pre-auth disabled. ad_bloodhound_collect ad_bloodhound_collect ad_kerberoast ad_kerberoast ad_password_spray ad_password_spray ad_psexec ad_psexec ad_secretsdump ad_secretsdump ad_wmiexec ad_wmiexec api_auth_bypass_test Test for authentication bypass vulnerabilities. api_ffuf_fuzz api_ffuf_fuzz api_fuzz_endpoint api_fuzz_endpoint api_graphql_fuzz Fuzz a GraphQL endpoint for vulnerabilities. api_jwt_crack Attempt to crack a JWT token's signing secret. + 72 more Every Zebbern Kali MCP tool, risk-classified, on the server page. browser_click browser_click browser_close browser_close browser_drag browser_drag browser_drop browser_drop browser_evaluate browser_evaluate browser_handle_dialog browser_handle_dialog browser_hide_highlight browser_hide_highlight browser_hover browser_hover browser_mouse_click_xy browser_mouse_click_xy browser_mouse_down browser_mouse_down browser_mouse_drag_xy browser_mouse_drag_xy browser_mouse_move_xy browser_mouse_move_xy + 70 more Every Playwright tool, risk-classified, on the server page. execute_script Execute JavaScript code in the browser tab new_tab New tab (url) pin_active_tab Pin active tab (tab id) set_active_tab Set active tab (tab id) set_url_tab Set url tab (tab id, url) browser_click Click an element on the page browser_evaluate Execute JavaScript in the browser context browser_fill Fill a form input with text browser_navigate Navigate to a specific URL browser_select Select an option from a dropdown menu browser_set_viewport Change the browser browser_ask_user Show an overlay dialog asking the user to perform an action or provide information (credentials, 2FA, CAPTCHA, OAuth consent). Can include input fi... + 67 more Every Browser tool, risk-classified, on the server page. announcement_focus_active Focus the currently active announcement presentation announcement_timeline_operation Perform timeline operation (play, pause, rewind) on active announcement announcement_trigger_active Retrigger the currently active announcement (starts from beginning) announcement_trigger_cue Trigger a specific cue by index in the active announcement announcement_trigger_next Trigger the next cue in the active announcement announcement_trigger_previous Trigger the previous cue in the active announcement audio_focus_active_playlist Focus the active audio playlist audio_focus_next_playlist Focus the next audio playlist audio_focus_playlist Focus a specific audio playlist audio_focus_previous_playlist Focus the previous audio playlist audio_trigger_active_next Trigger the next item in the active playlist audio_trigger_active_playlist Trigger the active audio playlist (restart from beginning) + 67 more Every Propresenter tool, risk-classified, on the server page. batch_run Run an action across multiple symbols and/or timeframes chart_scroll_to_date Jump the chart view to center on a specific date chart_set_visible_range Zoom the chart to a specific date range (unix timestamps) layout_switch Switch to a saved chart layout by name or ID pane_focus Focus a specific chart pane by index (0-based) pine_check Compile Pine Script via TradingView\ pine_compile Compile / add the current Pine Script to the chart pine_smart_compile Intelligent compile: detects button, compiles, checks errors, reports study changes replay_autoplay Toggle autoplay in replay mode, optionally set speed replay_start Start bar replay mode, optionally at a specific date replay_step Advance one bar in replay mode replay_stop Stop replay and return to realtime + 66 more Every TradingView MCP Bridge tool, risk-classified, on the server page. execute_query Execute a custom SELECT SQL query on the PostgreSQL database. query Execute a SQL query on the PostgreSQL database query Execute a SQL query on the PostgreSQL database. Supports SELECT statements and returns results as JSON. In read-only mode, only SELECT and EXPLAIN ... execute_sql Execute a SQL query and return the results as a list of dictionaries. cancel_query Cancel a running query by its PID. execute Execute a DML statement (INSERT, UPDATE, DELETE). Use parameterized queries ($1, $2) for safety. Returns affected row count. explain_query Run EXPLAIN ANALYZE on a query to see execution plan and timing. query_with_limit Execute a SELECT query with automatic LIMIT/OFFSET for pagination. Prevents accidentally fetching too many rows. reindex Rebuild one or more indexes. transaction Execute multiple SQL statements inside a single transaction. All succeed or all are rolled back. vacuum_analyze Run VACUUM ANALYZE on a table or the entire database to reclaim space and update statistics. execute-query Execute a parameterized SQL query with safety checks. Supports SELECT, INSERT, UPDATE, DELETE operations with parameter binding to prevent SQL inje... + 62 more Every PostgreSQL MCP Server tool, risk-classified, on the server page. blender.render_view Render a camera view to an image browser_act_batch Execute a batch of browser actions in sequence. Use for multi-step interactions (e.g. fill form, click submit, wait for result). browser_attach Attach to an existing Chrome browser session via Chrome DevTools Protocol. browser_back Go back in browser history browser_click Click on an element on the page browser_close Close the browser browser_close_tab Close a browser tab by tab id browser_drag Drag from one Browser V2 snapshot ref to another browser_emulate Set the visible in-app browser viewport/device emulation for responsive testing. browser_evaluate Execute JavaScript code in the browser context browser_fill Fill a form field with text browser_forward Go forward in browser history + 62 more Every CoWork OS tool, risk-classified, on the server page. acquire_printer_lock acquire_printer_lock arrange_parts_on_plate arrange_parts_on_plate auto_arrange_parts_on_plate auto_arrange_parts_on_plate auto_orient_model auto_orient_model await_print_completion await_print_completion boolean_mesh_op boolean_mesh_op calibrate_direct calibrate_direct clear_emergency_stop clear_emergency_stop compile_scad compile_scad complete_print_recovery complete_print_recovery confirm_print_recovery Confirm that a recovery plan should proceed. design_to_gcode_pipeline design_to_gcode_pipeline + 61 more Every Kiln tool, risk-classified, on the server page. adb_a11y_audit Run an automated accessibility audit on the current screen. Checks for: missing labels on interactive elements, undersized touch targets (<48dp), i... adb_airplane_cycle Cycle airplane mode on then off after a delay. Forces cellular re-registration — useful for radio diagnostics and network testing. adb_airplane_mode Toggle airplane mode on/off. Useful for resetting cellular registration during radio testing. adb_at_batch Send multiple AT commands sequentially and capture all responses. Useful for running a diagnostic sequence. Requires root. adb_at_probe Run a standard AT diagnostic probe: modem identification, signal quality, network registration, SIM status, and supported bands. Requires root. adb_at_send Send a single AT command to the modem and capture the response. Requires root. Use adb_at_detect to find the correct port, or specify it manually. adb_batch_actions Execute multiple input actions in a single tool call. Reduces ADB round-trips for multi-step UI interactions. Each action runs sequentially with an... adb_build_and_install Build a debug APK and install it on the connected device (convenience wrapper) adb_ci_run_tests Run Android instrumented tests (androidTest) via adb_ci_wait_boot Wait for a device or emulator to fully boot. Polls sys.boot_completed and waits for the launcher to be ready. Essential for CI pipelines. adb_connect Connect to a device over WiFi/TCP. Device must be paired first or have TCP/IP enabled. adb_disconnect Disconnect from a wireless device, or all wireless devices if no host specified + 60 more Every Deepadb tool, risk-classified, on the server page. execute_sql Execute a SQL statement with parameters: statement (string, required), warehouse_id (string, required), catalog (string, optional), schema (string,... repair_run repair_run run_job Run a Databricks job with parameters: job_id (string, required), job_parameters (dictionary, optional, job-level parameters) start_cluster Start a terminated Databricks cluster with parameter: cluster_id (string, required) execute_dbsql execute_dbsql execute_dbsql execute_dbsql databricks_cancel_all_runs databricks_cancel_all_runs databricks_cancel_quality_monitor_refresh databricks_cancel_quality_monitor_refresh databricks_cancel_run databricks_cancel_run databricks_cancel_statement databricks_cancel_statement databricks_create_execution_context databricks_create_execution_context databricks_create_global_init_script databricks_create_global_init_script + 59 more Every Databricks MCP Server tool, risk-classified, on the server page. kali_exploit_msfvenom_generate Generate custom payloads for Metasploit Framework.
Msfvenom is a payload generator and encoder combining msfpayload and msfencode.
**WARNING:** O... kali_network_masscan_scan High-speed port scanner capable of scanning the entire internet in minutes. Use with caution and proper authorization. kali_network_netdiscover_scan ARP reconnaissance tool for discovering hosts on a local network. Supports active and passive modes. kali_network_nmap_discover Discover live hosts on a network using Nmap. Supports ping, ARP, TCP, UDP, and ICMP discovery methods. kali_network_nmap_scan Perform network port scanning using Nmap.
Nmap (Network Mapper) is a powerful network scanner for discovering hosts, services, and potential vulne... kali_network_tcpdump_capture Capture network packets for analysis. Supports BPF filters and can save to PCAP files. kali_network_tshark_capture Wireshark CLI for packet capture and analysis with advanced filtering and multiple output formats. kali_password_hashcat_crack Advanced password recovery tool using GPU acceleration. Supports 300+ hash types. kali_password_hydra_brute Fast network login brute-forcer supporting many protocols.
Hydra is a parallelized login cracker which supports numerous protocols.
**Supported S... kali_password_john_crack John the Ripper password cracker supporting many hash formats and attack modes. kali_web_ffuf_fuzz Fast web fuzzer for discovering hidden files, directories, and parameters. URL must contain FUZZ keyword. kali_web_gobuster_dir Enumerate directories and files on web servers using wordlists.
Gobuster is a fast directory/file brute-forcing tool written in Go.
**Features:**... + 59 more Every Kali MCP Server tool, risk-classified, on the server page. sympy_abs Absolute value. sympy_And Logical AND. sympy_apart Perform partial fraction decomposition. sympy_asin Arc sine. sympy_cbrt Cube root. sympy_cosh Hyperbolic cosine. sympy_derivative sympy_derivative sympy_diff Differentiate an expression. sympy_dsolve Solve ordinary differential equation. sympy_erf Error function. sympy_evalf Evaluate expression to floating point. sympy_evaluate Toggle evaluation globally. + 59 more Every Pypi:mcp Sympy tool, risk-classified, on the server page. bake_ao bake_ao bake_physics Bake all physics simulations in the scene to cache. bake_textures bake_textures blender_launch blender_launch blender_open_file Open a .blend file in the running Blender instance. bmesh_operation bmesh_operation build_material_nodes build_material_nodes build_scene_from_json build_scene_from_json cloth_sim_model cloth_sim_model execute_code Execute arbitrary Python code inside Blender. Has access to bpy, mathutils, math, os. execute_script_headless execute_script_headless execute_script_on_file Execute Python code on an existing .blend file in headless mode. + 58 more Every Blender Copilot MCP Server tool, risk-classified, on the server page. browser_attr_remove Remove an attribute from an element. browser_attr_set Set an attribute on an element. browser_auth_load Load auth session: restore cookies and navigate to saved URL. browser_back Navigate back in browser history. Returns new URL and title. browser_block Block URLs matching patterns (substring match on fetch/XHR). browser_check Check, uncheck, or toggle a checkbox or radio button. browser_click browser_click browser_console_start Start capturing browser console output (log, warn, error, info). browser_console_stop Stop capturing browser console output (stops re-injection after navigation). browser_cookies_load Load cookies from a JSON file into the browser. browser_css_inject Inject a custom stylesheet into the page. browser_css_remove Remove injected stylesheet(s). + 58 more Every Termux Browser Pilot tool, risk-classified, on the server page. Showing the 50 servers with the most execute tools — 10953 servers in the catalogue expose them. Find the rest through tool search or the policy library.
BROWSE OTHER CATEGORIES
FREQUENTLY ASKED QUESTIONS
Tools that trigger processes or run actions. High risk -- rate limits and argument validation recommended. There are 49926 execute tools across 10953 MCP servers in the PolicyLayer reference.
Execute tools need rate limits and argument validation. They can trigger builds, notifications, or expensive compute jobs.
Playwright MCP, Pentester-MCP, Yaver, Mcp, Playwright MCP Server, and 10948 more.