em_escrow_refund
A financial tool on the Execution Market MCP server.
This record as markdown: /tools/market-execution-execution-market/em-escrow-refund.md
What em_escrow_refund does on Execution Market
AI agents use em_escrow_refund to commit financial operations through Execution Market, usually the final step of a payment, billing, or trading workflow. A call moves real money.
Why em_escrow_refund is rated Critical
This tool operates within a financial payment system (Execution Market with USDC transactions). Refunding escrowed funds constitutes a direct financial transaction that moves money, placing it in the Financial category. The critical severity reflects the high-value potential of USDC refunds and the risk that an AI agent could initiate unintended or unauthorized refunds if parameters are misused.
From the tool's definition Tool name 'em_escrow_refund' combined with server description mentioning 'Gasless USDC payments via x402' and sibling tools like em_approve_submission, em_assign_task, and em_check_escrow_state indicate this tool manages financial escrow operations.
Attacks that exploit this kind of access
The rule that runs em_escrow_refund safely
PolicyLayer is an MCP gateway: it sits between your AI agents and Execution Market, and checks every tool call against a rule you set before the call runs. Nothing changes on the server itself. For em_escrow_refund, this is the rule to start with:
Any call to em_escrow_refund is blocked until a human approves it. The rest of the server keeps working.
The button opens the PolicyLayer dashboard: create your workspace, connect Execution Market, apply this rule, and every em_escrow_refund call is checked against it from then on.
Questions about em_escrow_refund
em_escrow_refund is a financial tool on the Execution Market MCP server. It is categorised as a Financial tool in the Execution Market MCP Server, which means it involves financial transactions. Block by default and require explicit approval.
Register the Execution Market MCP server in PolicyLayer and add a rule for em_escrow_refund: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Execution Market. Nothing to install.
em_escrow_refund is a Financial tool with critical risk. Critical-risk tools should be blocked by default and only enabled with explicit human approval.
Yes. Add a rate_limit block to the em_escrow_refund rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.
Set action: deny in the PolicyLayer policy for em_escrow_refund. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.
em_escrow_refund is provided by the Execution Market MCP server (https://mcp.execution.market/mcp/). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.
More on Execution Market, and thousands of servers like it.
Across the catalogue