Lint AHK v2 scripts. Levels: fast (syntax), standard (default, +structure), thorough (+semantics). Supports autoFix with dryRun preview.
AI agents call AHK_Lint to retrieve information from Ahk without modifying anything — typically the context-gathering step in research, monitoring, and reporting workflows, before the agent takes action elsewhere.
The AHK_Lint tool analyzes and checks AutoHotkey scripts for issues without modifying them by default. While it mentions 'autoFix' capability, the explicit support for 'dryRun preview' indicates non-destructive behavior—it shows changes without applying them. This is a static analysis and linting tool that retrieves information about code quality/issues, making it a Read operation.
From the tool's definition Lint AHK v2 scripts. Levels: fast (syntax), standard (default, +structure), thorough (+semantics). Supports autoFix with dryRun preview.
Documented attack patterns abuse exactly the kind of access AHK_Lint gives an agent:
PolicyLayer is an MCP gateway — it sits between your AI agents and Ahk, and nothing reaches the server without passing your rules. This is the rule we recommend for AHK_Lint:
{
"version": "1",
"default": "deny",
"tools": {
"AHK_Lint": {}
}
} AHK_Lint is read-only, so it stays allowed — but everything else on the server is denied unless you say otherwise.
Free to start. No card required.
Lint AHK v2 scripts. Levels: fast (syntax), standard (default, +structure), thorough (+semantics). Supports autoFix with dryRun preview. It is categorised as a Read tool in the Ahk MCP Server, which means it retrieves data without modifying state.
Register the Ahk MCP server in PolicyLayer and add a rule for AHK_Lint: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Ahk. Nothing to install.
AHK_Lint is a Read tool with low risk. Read-only tools are generally safe to allow by default.
Yes. Add a rate_limit block to the AHK_Lint rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.
Set action: deny in the PolicyLayer policy for AHK_Lint. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.
AHK_Lint is provided by the Ahk MCP server (truecrimedev/ahk-mcp). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.
Deterministic rules across all 40 Ahk tools. Per-identity grants. Full audit log. Live in minutes. Nothing to install.
Free to start. No card required.
40 Ahk tools catalogued and risk-classified — across an index of 42,500+ MCP servers.