# refresh_session

Refresh your API key if it's expiring. Returns a new api_key valid for 90 days. Your old key is deactivated.

Agent View of the PolicyLayer registry record for `refresh_session`. HTML page: https://policylayer.com/tools/io-github-wirternow-agent-bank/refresh-session

## Facts

- Tool: `refresh_session`
- Server: Ai Agent Bank (`https://tdueqhfxyojmjgactdyc.supabase.co/functions/v1/mcp-server`) — https://policylayer.com/tools/io-github-wirternow-agent-bank.md
- Homepage: https://github.com/WirterNow/ai-agent-bank-mcp-server
- Risk category: Write (Medium risk)
- Registry record: grade F, identity unverified
- Server auth posture: open
- Server CORS policy: *
- Server rate-limited: no
- Parameters: 2 (2 required)
- Recommended policy verdict: Rate-limited

## Parameters

| Parameter | Type | Required | Description |
| --- | --- | --- | --- |
| `api_key` | string | yes | Your current api_key |
| `agent_id` | string | yes | UUID of your agent |

Parameters from the server's own tool schema.

## Example call (MCP tools/call, JSON-RPC 2.0)

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "refresh_session",
    "arguments": {
      "api_key": "<api_key>",
      "agent_id": "<agent_id>"
    }
  }
}
```

## Why refresh_session is rated Medium

This tool modifies authentication credentials by generating a new API key and deactivating the old one. It is a reversible credential rotation operation (Write), not financial, destructive (the old key is deactivated but this is an expected side effect of rotation, not data loss), or execute. However, misuse could lock out legitimate users by deactivating their active key, giving it a medium severity.

From the tool's own definition: "Refresh your API key if it's expiring. Returns a new api_key valid for 90 days. Your old key is deactivated."

Risk signals: Handles credentials or secrets (api_key)

## Use case

AI agents use refresh_session to create or update resources in Ai Agent Bank, usually the action step of a workflow, after the agent has gathered context. Every call changes real data in your Ai Agent Bank environment.

## Recommended policy (PolicyLayer)

Verdict: **Rate-limited**. Enforced by the PolicyLayer MCP gateway (https://policylayer.com/mcp-gateway) before a call reaches Ai Agent Bank:

```json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "refresh_session": {
      "limits": [
        {
          "counter": "refresh_session_rate",
          "window": "minute",
          "max": 30,
          "scope": "grant"
        }
      ]
    }
  }
}
```

## Other tools on Ai Agent Bank (42)

- `accept_barter` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/accept-barter.md
- `accept_swap` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/accept-swap.md
- `borrow` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/borrow.md
- `borrow_capability` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/borrow-capability.md
- `borrow_cc` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/borrow-cc.md
- `cancel_cc_order` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/cancel-cc-order.md
- `confirm_barter_delivery` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/confirm-barter-delivery.md
- `create_job` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/create-job.md
- `create_swap` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/create-swap.md
- `fill_cc_order` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/fill-cc-order.md
- `negotiate_job` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/negotiate-job.md
- `place_cc_order` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/place-cc-order.md
- `register_agent` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/register-agent.md
- `set_cost_profile` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/set-cost-profile.md
- `transfer` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/transfer.md
- `transfer_cc` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/transfer-cc.md
- `withdraw_cc` — Financial — https://policylayer.com/tools/io-github-wirternow-agent-bank/withdraw-cc.md
- `analyze_opportunity` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/analyze-opportunity.md
- `assess_credit` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/assess-credit.md
- `browse_jobs_with_economics` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/browse-jobs-with-economics.md
- `concierge_chat` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/concierge-chat.md
- `estimate_cc_price` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/estimate-cc-price.md
- `find_matching_jobs` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/find-matching-jobs.md
- `get_agent_profile` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-agent-profile.md
- `get_balance` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-balance.md
- `get_cc_balance` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-cc-balance.md
- `get_cc_credit` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-cc-credit.md
- `get_cc_history` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-cc-history.md
- `get_cc_market` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-cc-market.md
- `get_cc_orderbook` — Read — https://policylayer.com/tools/io-github-wirternow-agent-bank/get-cc-orderbook.md
- …and 12 more: https://policylayer.com/tools/io-github-wirternow-agent-bank.md

## For agents

This record is a snapshot. Live verdicts and the full registry:

- Check every server in your MCP config at once: `npx -y policylayer stack`
- Vet a server before you add it: install the mcp-precheck skill — `npx skills add https://policylayer.com` (skill text: https://policylayer.com/skill.md)
- Query the registry over MCP: endpoint `https://api.policylayer.com/mcp` — tools `check_mcp_server`, `check_mcp_stack`, `check_tool`, `search_registry`, `get_change_events`

---

Source: the PolicyLayer MCP registry — one continuously verified record per MCP server. Full record: https://policylayer.com/registry?q=io-github-wirternow-agent-bank · API: https://policylayer.com/registry/api · Policy library: https://policylayer.com/policies/io-github-wirternow-agent-bank
