Medium Risk

set_object_color

Set the color of a FreeCAD object. Args: object_name: Name of the object. color: RGB color as [r, g, b] where each value is 0.0-1.0. Example: [1.0, 0.0, 0.0] for red. doc_name: Document containing the object. Uses active document if None. Returns: Dictionary with result: - success: Whether operat...

How to control set_object_color ↓

AI agents use set_object_color to create or update resources in FreeCAD Robust MCP Server — usually the action step of a workflow, after the agent has gathered context. Every call changes real data in your FreeCAD Robust MCP Server environment.

Medium Risk

This tool creates or modifies data (object color attribute) reversibly, fitting the Write category. It has no destructive effects, does not execute arbitrary code, involves no financial impact, and produces only cosmetic/visual changes to a 3D model. Severity is low due to limited blast radius: misuse would only alter object appearance without affecting model geometry, data integrity, or system state.

From the tool's definition Tool modifies the visual property (color) of a FreeCAD object. Description states it 'Set the color' and returns success/color values indicating state change. The operation is reversible—the color can be changed again.

Documented attack patterns abuse exactly the kind of access set_object_color gives an agent:

PolicyLayer is an MCP gateway — it sits between your AI agents and FreeCAD Robust MCP Server, and nothing reaches the server without passing your rules. This is the rule we recommend for set_object_color:

policy.json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "set_object_color": {
      "limits": [
        {
          "counter": "set_object_color_rate",
          "window": "minute",
          "max": 30,
          "scope": "grant"
        }
      ]
    }
  }
}

set_object_color stays usable, but capped — an agent stuck in a loop can't make hundreds of changes a minute. Everything else on the server is denied unless you say otherwise.

  1. Create a free account and register FreeCAD Robust MCP Server — nothing to install.
  2. Add this policy — paste it, or build it visually.
  3. Point your MCP client (Claude, Cursor, anything) at your gateway URL.
LIMIT THIS TOOL →

Free to start. No card required.

Go deeper

What does the set_object_color tool do? +

Set the color of a FreeCAD object. Args: object_name: Name of the object. color: RGB color as [r, g, b] where each value is 0.0-1.0. Example: [1.0, 0.0, 0.0] for red. doc_name: Document containing the object. Uses active document if None. Returns: Dictionary with result: - success: Whether operation was successful - color: New color values. It is categorised as a Write tool in the FreeCAD Robust MCP Server MCP Server, which means it can create or modify data. Consider rate limits to prevent runaway writes.

How do I enforce a policy on set_object_color? +

Register the FreeCAD Robust MCP Server MCP server in PolicyLayer and add a rule for set_object_color: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches FreeCAD Robust MCP Server. Nothing to install.

What risk level is set_object_color? +

set_object_color is a Write tool with medium risk. Write tools should be rate-limited to prevent accidental bulk modifications.

Can I rate-limit set_object_color? +

Yes. Add a rate_limit block to the set_object_color rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.

How do I block set_object_color completely? +

Set action: deny in the PolicyLayer policy for set_object_color. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.

What MCP server provides set_object_color? +

set_object_color is provided by the FreeCAD Robust MCP Server MCP server (spkane/freecad-addon-robust-mcp-server). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.

Enforce policy on every FreeCAD Robust MCP Server tool call.

Deterministic rules across all 152 FreeCAD Robust MCP Server tools. Per-identity grants. Full audit log. Live in minutes. Nothing to install.

Free to start. No card required.

152 FreeCAD Robust MCP Server tools catalogued and risk-classified — across an index of 42,500+ MCP servers.

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.