49926 tools

EXECUTE MCP TOOLS

Tools that trigger processes or run actions. High risk -- rate limits and argument validation recommended.

Severity: High severity →

Real-world attack patterns documented against execute-class MCP tools. Each links to the full case and the defensive policy.

Browse the full MCP Attack Database →

foura_proxy Route an HTTP request through FourA's proxy pool with automatic retry across multiple proxies. Per-host proxy rating picks proxies most likely to s... query_database Execute SQL query. authenticate Log in to takehub. Opens a browser URL and waits for login to complete (up to 2 minutes). Returns once authenticated. complete_auth Wait for browser-based login to complete. Usually not needed — authenticate now waits automatically. Only call if authenticate timed out and you wa... regenerate_topic_summary Force a fresh regeneration of a topic's AI summary, ignoring the cache. Useful after new video responses come in. May take 15–30s while the transcr... swiftsign_create_embedded_url Mint a short-lived embedded signing URL for a recipient (30-minute expiry). Returns a url to embed plus its expiresAt. The envelope must already be... deploy_app Deploys an app to a VM and exposes it at a public https://<name>-<id>.redu.cloud URL (a random 8-char suffix is appended to <name> for uniqueness —... deploy_compose Deploys a MULTI-CONTAINER app — a repo that ships a docker-compose.yml / compose.yaml (app + its own db/redis/worker containers) — onto ONE VM via ... instance_action Start, stop, or reboot an instance. action must be START, STOP, REBOOT_SOFT, or REBOOT_HARD. prepare_upload Returns the LOCAL shell commands to package your working directory and upload it for an upload-mode deploy (no git, no PAT). Run them in the user's... scaffold_local OPTIONAL preflight: returns a podman-compose.yml + .env so the user can run the app (and a throwaway local Postgres) on THEIR machine before deploy... setup_agent_fleet Complete one-shot setup: validates prerequisites, creates a controller VM + worker VMs, auto-creates a public HTTPS URL on port 7070, seeds a start... + 175 more Every Mcp tool, risk-classified, on the server page.

AINUMBERS MCP APPS

146 All Ainumbers Mcp Apps tools →
agentic_mandate_sandbox Simulate agent payment policies for tokenized A2A corridors: set spend caps, MCC allowlists, velocity throttles, and approval thresholds; run synth... allocate_ihb_interest IHB Interest Allocation: OpenChainGraph compute node (analytics_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports an AP2 ... amortize_asc606_commissions ASC 340-40 Commission Amortization: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exp... anchor_document_integrity Document Integrity & eIDAS Electronic Timestamp Anchor: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero P... apply_climate_scenario Climate Scenario Applicator (NGFS / Fit-for-55): OpenChainGraph compute node (model_governance). Runs deterministically in-browser; zero PII, zero ... build_226j_response_evidence_pack 226J Response Evidence Pack Builder: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Ex... build_agent_incident_record Agent Incident Record Composer: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports... build_agent_test_evidence Quarterly Agent Test Evidence Composer: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress.... build_agent_traffic_policy Agent-Traffic Acceptance Policy Builder: OpenChainGraph compute node (agent_guardrail_mandate). Runs deterministically in-browser; zero PII, zero e... build_ai_conformity_pack AI Act Conformity Pack Builder: OpenChainGraph compute node (model_governance). Runs deterministically in-browser; zero PII, zero egress. Exports a... build_ai_training_data_lineage_record AI Training-Data Lineage Record: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Export... build_ai_workpaper_record AI-Tool-Usage Workpaper Record: OpenChainGraph compute node (compliance_mandate). Runs deterministically in-browser; zero PII, zero egress. Exports... + 134 more Every Ainumbers Mcp Apps tool, risk-classified, on the server page.
agent_pool Manage a fixed-size warm pool of pre-spawned agents to skip cold-start cost on bursty workloads. Use when native Task is wrong because (a) you have... agent_spawn Spawn a subagent agentdb_consolidate Run memory consolidation to promote entries across tiers and compress old data Use when generic memory_* tools are wrong because you need AgentDB-s... agentdb_route Route a task via AgentDB SemanticRouter or LearningSystem recommendAlgorithm Use when generic memory_* tools are wrong because you need AgentDB-spe... agentdb_session-start Start a session with ReflexionMemory episodic replay Use when generic memory_* tools are wrong because you need AgentDB-specific controllers (HNSW ... autopilot_disable Disable autopilot. Agents will be allowed to stop even if tasks remain. Use when running long-horizon goals that should resume automatically across... autopilot_enable Enable autopilot persistent completion. Agents will be re-engaged when tasks remain incomplete. Use when running long-horizon goals that should res... autopilot_learn Discover success patterns from past task completions. Requires AgentDB for full functionality. Use when running long-horizon goals that should resu... autopilot_predict Predict the optimal next action based on current state and learned patterns. Use when running long-horizon goals that should resume automatically a... benchmark_run Execute performance benchmarks (V2 compatible). Deprecated: Use system/metrics instead. browser_back Navigate back in browser history Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows wi... browser_check Check a checkbox Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows with cookie reuse,... + 113 more Every Ruflo tool, risk-classified, on the server page.

CLAUDE FLOW

121 All Claude Flow tools →
agent_pool Manage a fixed-size warm pool of pre-spawned agents to skip cold-start cost on bursty workloads. Use when native Task is wrong because (a) you have... agent_spawn Spawn a subagent agentdb_consolidate Run memory consolidation to promote entries across tiers and compress old data Use when generic memory_* tools are wrong because you need AgentDB-s... agentdb_route Route a task via AgentDB SemanticRouter or LearningSystem recommendAlgorithm Use when generic memory_* tools are wrong because you need AgentDB-spe... agentdb_semantic-route Route an input via AgentDB SemanticRouter for intent classification Use when generic memory_* tools are wrong because you need AgentDB-specific con... autopilot_disable Disable autopilot. Agents will be allowed to stop even if tasks remain. Use when running long-horizon goals that should resume automatically across... autopilot_enable Enable autopilot persistent completion. Agents will be re-engaged when tasks remain incomplete. Use when running long-horizon goals that should res... autopilot_predict Predict the optimal next action based on current state and learned patterns. Use when running long-horizon goals that should resume automatically a... benchmark_run Execute performance benchmarks (V2 compatible). Deprecated: Use system/metrics instead. browser_back Navigate back in browser history Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows wi... browser_check Check a checkbox Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping, login flows with cookie reuse,... browser_click Click an element using ref (@e1) or CSS selector Use when native WebFetch is wrong because you need real browser automation — JS-heavy SPA scraping... + 109 more Every Claude Flow tool, risk-classified, on the server page.

NODEBENCH

110 All Nodebench tools →
benchmark_models Run the same prompt against multiple LLM providers and compare responses. Returns side-by-side results with latency, token usage, and a summary. Us... bootstrap_parallel_agents Detect whether a target project repo has parallel agent infrastructure and, if not, scaffold everything needed. Scans for task coordination, role c... build_banking_packet Build a banker-readiness packet from the canonical company packet. build_company_profile_starter Build a starter PitchBook/Crunchbase-like company profile. build_founder_operating_model Build the complete founder operating model: execution order, queue topology, packet routing, source trust policy, progression rubric, and benchmark... build_research_digest Generate a digest of new (unseen) articles from RSS feeds. Compares against previously seen articles via SQLite. Returns only new items grouped by ... build_shared_context_subscription Build the exact pull/subscription manifest an agent client should use to watch a packet or packet scope. build_shared_context_subscription_manifest Build a filtered snapshot/events/pull manifest for one peer, packet class, producer, scope, or subject so clients can subscribe to only relevant sh... build_submission_export Build a generic submission export from the canonical company packet. build_temporal_graph Build a temporal relationship graph for an entity. burst_capture Capture N sequential screenshots at fixed intervals using Playwright. call_driver_tool Invoke a tool on a connected MCP driver. This proxies the call to the external MCP server (e.g. playwright-mcp or mobile-mcp) and returns the resul... + 98 more Every Nodebench tool, risk-classified, on the server page.

CHROME DEVTOOLS

107 All Chrome Devtools tools →
clear_console Clear the browser console. Returns: Status of the clear operation connect_to_browser Connect to an existing Chrome instance with remote debugging enabled. Establishes a connection to a Chrome browser that's already running ... evaluate_in_all_frames Execute JavaScript code in all frames/iframes of the page. Args: code: JavaScript code to execute Returns: ... execute_javascript Execute JavaScript code in the browser context. Args: code: JavaScript code to execute Returns: Result of... focus_element Focus a DOM element. Args: node_id: Node ID of the element to focus Returns: Success status of the focus ... inspect_console_object Inspect a JavaScript object or expression in detail. Args: expression: JavaScript expression to inspect Returns: ... navigate_to_url Navigate the connected browser to a specific URL. Instructs the currently connected Chrome instance to navigate to the specified U... override_storage_quota Override storage quota for a specific origin. Args: origin: Security origin to override quota for quota_size_mb: N... start_chrome Start Chrome with remote debugging enabled and optionally establish connection. Launches Chrome browser with DevTools Protocol debugging e... start_chrome_and_connect Start Chrome with debugging, connect, and navigate to URL in one step. Convenience function that combines browser startup, connection esta... start_css_coverage_tracking Start tracking CSS rule usage for coverage analysis. Returns: Status of coverage tracking initialization track_indexeddb Enable or disable IndexedDB tracking for an origin. Args: origin: Security origin to track enable: Whether to enab... + 95 more Every Chrome Devtools tool, risk-classified, on the server page.
act Execute a natural language action. The AI will plan and perform multi-step operations in a single invocation, useful for transient UI interactions ... android_connect Connect to Android device via ADB. If deviceId not provided, uses the first available device. AndroidBackButton AndroidBackButton action, Trigger the system "back" operation on Android devices AndroidHomeButton AndroidHomeButton action, Trigger the system "home" operation on Android devices AndroidRecentAppsButton AndroidRecentAppsButton action, Trigger the system "recent apps" operation on Android devices CursorMove CursorMove action, Move the text cursor (caret) left or right within an input field or text area. Use this to reposition the cursor without selecti... DoubleClick DoubleClick action, Double click the element. Parameters: locate (object) - The element to be double clicked DragAndDrop DragAndDrop action, Pick up a specific UI element and move it to a new position (e.g., reorder a card, move a file into a folder, sort list items).... KeyboardPress KeyboardPress action, Press a key or key combination, like "Enter", "Tab", "Escape", or "Control+A", "Shift+Enter". Do not use this to type text.. ... Launch Launch action, Launch an Android app or URL. Parameters: uri (string) - App name, package name, or URL to launch. Prioritize using the exact packag... LongPress LongPress action, Long press the element. Parameters: locate (object) - The element to be long pressed; duration? (number) - Long press duration in... Pinch Pinch action, Perform a two-finger pinch gesture. Use direction "in" to pinch fingers together (zoom out), or "out" to spread fingers apart (zoom i... + 81 more Every Android tool, risk-classified, on the server page.

MIOFFICE — AI-POWERED WORKSPACE STUDIO

86 All MiOffice — AI-Powered Workspace Studio tools →
mio_ai_audio_enhancer AI Audio Enhancer — Enhance audio — speech denoising or music mastering, depending on input. AI Studio run — dispatches to our AI workers (Modal). ... mio_ai_cartoon_filter AI Cartoon Filter — Transform photos into anime/cartoon style art using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run v... mio_ai_clip_maker AI Clip Maker — Extract the best short clips from long videos using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_document_summarizer AI Document Summarizer — Summarize long documents into key points using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run v... mio_ai_document_translator AI Document Translator — Translate text between 16 languages using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary b... mio_ai_face_enhancer AI Face Enhancer — Enhance and restore faces in photos using AI — sharpen details, fix blur, improve quality. AI Studio run — dispatches to our AI ... mio_ai_face_swap Face Swap — Swap faces between photos using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary by model and file size. ... mio_ai_headshot_generator AI Headshot Generator — Generate professional headshots from any photo. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_hum_to_song AI Hum to Song — Hum a melody, write lyrics, get a full song with vocals in your melody's key and tempo. Powered by MiOffice Song Engine.. AI Studi... mio_ai_image_generator AI Image Generator — Generate images from text descriptions using AI. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary by... mio_ai_logo_generator AI Logo Generator — Generate professional logos from text descriptions. AI Studio run — dispatches to our AI workers (Modal). Credits per run vary ... mio_ai_melody_to_music AI Melody to Music — Upload a clean single-instrument recording and AI generates instrumental music in your style. No vocals — for songs with vocal... + 74 more Every MiOffice — AI-Powered Workspace Studio tool, risk-classified, on the server page.
adb_a11y_audit Run an automated accessibility audit on the current screen. Checks for: missing labels on interactive elements, undersized touch targets (<48dp), i... adb_airplane_cycle Cycle airplane mode on then off after a delay. Forces cellular re-registration — useful for radio diagnostics and network testing. adb_airplane_mode Toggle airplane mode on/off. Useful for resetting cellular registration during radio testing. adb_at_batch Send multiple AT commands sequentially and capture all responses. Useful for running a diagnostic sequence. Requires root. adb_at_probe Run a standard AT diagnostic probe: modem identification, signal quality, network registration, SIM status, and supported bands. Requires root. adb_at_send Send a single AT command to the modem and capture the response. Requires root. Use adb_at_detect to find the correct port, or specify it manually. adb_batch_actions Execute multiple input actions in a single tool call. Reduces ADB round-trips for multi-step UI interactions. Each action runs sequentially with an... adb_build_and_install Build a debug APK and install it on the connected device (convenience wrapper) adb_ci_run_tests Run Android instrumented tests (androidTest) via adb_ci_wait_boot Wait for a device or emulator to fully boot. Polls sys.boot_completed and waits for the launcher to be ready. Essential for CI pipelines. adb_connect Connect to a device over WiFi/TCP. Device must be paired first or have TCP/IP enabled. adb_disconnect Disconnect from a wireless device, or all wireless devices if no host specified + 60 more Every Deepadb tool, risk-classified, on the server page.

KALI MCP SERVER

71 All Kali MCP Server tools →
kali_exploit_msfvenom_generate Generate custom payloads for Metasploit Framework. Msfvenom is a payload generator and encoder combining msfpayload and msfencode. **WARNING:** O... kali_network_masscan_scan High-speed port scanner capable of scanning the entire internet in minutes. Use with caution and proper authorization. kali_network_netdiscover_scan ARP reconnaissance tool for discovering hosts on a local network. Supports active and passive modes. kali_network_nmap_discover Discover live hosts on a network using Nmap. Supports ping, ARP, TCP, UDP, and ICMP discovery methods. kali_network_nmap_scan Perform network port scanning using Nmap. Nmap (Network Mapper) is a powerful network scanner for discovering hosts, services, and potential vulne... kali_network_tcpdump_capture Capture network packets for analysis. Supports BPF filters and can save to PCAP files. kali_network_tshark_capture Wireshark CLI for packet capture and analysis with advanced filtering and multiple output formats. kali_password_hashcat_crack Advanced password recovery tool using GPU acceleration. Supports 300+ hash types. kali_password_hydra_brute Fast network login brute-forcer supporting many protocols. Hydra is a parallelized login cracker which supports numerous protocols. **Supported S... kali_password_john_crack John the Ripper password cracker supporting many hash formats and attack modes. kali_web_ffuf_fuzz Fast web fuzzer for discovering hidden files, directories, and parameters. URL must contain FUZZ keyword. kali_web_gobuster_dir Enumerate directories and files on web servers using wordlists. Gobuster is a fast directory/file brute-forcing tool written in Go. **Features:**... + 59 more Every Kali MCP Server tool, risk-classified, on the server page.

Showing the 50 servers with the most execute tools — 10953 servers in the catalogue expose them. Find the rest through tool search or the policy library.

FREQUENTLY ASKED QUESTIONS

Tools that trigger processes or run actions. High risk -- rate limits and argument validation recommended. There are 49926 execute tools across 10953 MCP servers in the PolicyLayer reference.

Execute tools need rate limits and argument validation. They can trigger builds, notifications, or expensive compute jobs.

Playwright MCP, Pentester-MCP, Yaver, Mcp, Playwright MCP Server, and 10948 more.

Take your agents live. Without losing control.

Route your MCP traffic through PolicyLayer. Every tool call is checked against your policy before it runs: allow, deny, or require approval. Per-identity grants. Full audit log. Live in minutes.

Instant setup, no code required.

46,500+ MCP servers and 515,000+ tools scanned and risk-classified.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.