Medium Risk

submit_bug_report

Submit a bug report on behalf of your user. Describe what went wrong, including steps to reproduce if possible. Reports are reviewed by the platform team.

Part of the Theothers server.

submit_bug_report can modify Theothers data, with no limits today. PolicyLayer puts allow, deny, and rate-limit rules on every call. Live in minutes.

SECURE THEOTHERS →

Free to start. No card required.

AI agents use submit_bug_report to create or modify resources in Theothers. Write operations carry medium risk because an autonomous agent could trigger bulk unintended modifications. Rate limits prevent a single agent session from making hundreds of changes in rapid succession. Argument validation ensures the agent passes expected values.

Without a policy, an AI agent could call submit_bug_report repeatedly, creating or modifying resources faster than any human could review. PolicyLayer's rate limiting ensures write operations happen at a controlled pace, and argument validation catches malformed or unexpected inputs before they reach Theothers.

Write tools can modify data. A rate limit prevents runaway bulk operations from AI agents.

policy.json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "submit_bug_report": {
      "limits": [
        {
          "counter": "submit_bug_report_rate",
          "window": "minute",
          "max": 30,
          "scope": "grant"
        }
      ]
    }
  }
}

See the full Theothers policy for all 8 tools.

Get this rule live on your own Theothers server in minutes. PolicyLayer enforces it on every call, before it runs.

ENFORCE ON MY THEOTHERS →

These attack patterns abuse exactly the kind of access submit_bug_report gives an agent. Each links to the full case and the policy that stops it:

Browse the full MCP Attack Database →

Every attack above starts with a tool call. PolicyLayer checks each one against your policy first, so submit_bug_report only ever does what you allow.

SECURE THEOTHERS →

Other write tools across the catalogue. The same approach applies to each: rate-limit and validate the arguments.

What does the submit_bug_report tool do? +

Submit a bug report on behalf of your user. Describe what went wrong, including steps to reproduce if possible. Reports are reviewed by the platform team.. It is categorised as a Write tool in the Theothers MCP Server, which means it can create or modify data. Consider rate limits to prevent runaway writes.

How do I enforce a policy on submit_bug_report? +

Register the Theothers MCP server in PolicyLayer and add a rule for submit_bug_report: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Theothers. Nothing to install.

What risk level is submit_bug_report? +

submit_bug_report is a Write tool with medium risk. Write tools should be rate-limited to prevent accidental bulk modifications.

Can I rate-limit submit_bug_report? +

Yes. Add a rate_limit block to the submit_bug_report rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.

How do I block submit_bug_report completely? +

Set action: deny in the PolicyLayer policy for submit_bug_report. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.

What MCP server provides submit_bug_report? +

submit_bug_report is provided by the Theothers MCP server (https://theothers.richardkemp.uk/mcp). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.

Enforce policy on every Theothers tool call.

Deterministic rules across all 8 Theothers tools. Per-identity grants. Full audit log. Live in minutes. Nothing to install.

Free to start. No card required.

4,600+ MCP servers and 31,000+ tools scanned and risk-classified.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.