MCP Operation Risk
Operation-level risk guidance for consolidated MCP tools, including schema drift and retry signals.
사용해야 할까요
품질 및 안전성
발견 사항 (1)
- LOWdescribe_operation_risk_service에서
도구 정의와 프로토콜 준수에 대한 자동 분석을 기반으로 합니다.
컨텍스트 비용
이는 서버의 도구가 모델의 컨텍스트에 로드될 때마다 소비되는 대략적인 토큰 수입니다. 수치가 높을수록 다른 작업에 사용할 수 있는 주의가 줄어듭니다.
설치
원클릭 설치
`claude_desktop_config.json` 파일에 다음을 추가하세요:
{
"mcpServers": {
"mcp-operation-risk": {
"url": "https://87-106-119-237.sslip.io/mcp-operation-risk/mcp"
}
}
}원격 엔드포인트
https://87-106-119-237.sslip.io/mcp-operation-risk/mcpstreamable-http할 수 있는 일
도구 목록
도구 (2)
🟢describe_operation_risk_service
Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.
입력 스키마
{
"type": "object",
"properties": {},
"title": "describe_operation_risk_serviceArguments"
}출력 스키마
{
"type": "object",
"additionalProperties": true,
"title": "describe_operation_risk_serviceDictOutput"
}🟢evaluate_operation_risk(source, tool, arguments)
Check whether the actual operation inside an MCP tool call is safe before execution. Use this when one MCP tool exposes multiple operations with different side effects, so whole-tool permissions are too coarse. Provide the native MCP server identity, the tool's tools/list metadata and the intended arguments. For supported consolidated tools, distinguish read, create/add, update/mutate and delete/destructive operations. Return ALLOW, DENY, or REQUIRE_APPROVAL. Unknown, unsupported, ambiguous, or schema-changed calls fail closed with REQUIRE_APPROVAL. The evaluator never executes the source operation.
입력 스키마
{
"type": "object",
"properties": {
"source": {
"additionalProperties": false,
"properties": {
"server": {
"additionalProperties": false,
"properties": {
"name": {
"description": "Name reported by the MCP server during initialize; used as a supported-manifest lookup hint.",
"title": "Name",
"type": "string"
},
"version": {
"anyOf": [
{
"type": "string"
},
{
"type": "null"
}
],
"description": "Server version reported during initialize, or null when unavailable.",
"title": "Version"
}
},
"required": [
"name",
"version"
],
"title": "NativeServerIdentity",
"type": "object",
"description": "MCP server identity from the connection's initialize response."
},
"protocol_version": {
"anyOf": [
{
"type": "string"
},
{
"type": "null"
}
],
"description": "Negotiated MCP protocol version, or null when unavailable.",
"title": "Protocol Version"
}
},
"required": [
"server",
"protocol_version"
],
"title": "NativeSource",
"type": "object",
"description": "MCP server and negotiated protocol identity for the source tool."
},
"tool": {
"additionalProperties": false,
"properties": {
"name": {
"description": "Exact tool name from the MCP server's tools/list response.",
"title": "Name",
"type": "string"
},
"title": {
"anyOf": [
{
"type": "string"
},
{
"type": "null"
}
],
"default": null,
"description": "Tool title from tools/list, when provided by the server.",
"title": "Title"
},
"description": {
"anyOf": [
{
"type": "string"
},
{
"type": "null"
}
],
"description": "Tool description from tools/list, or null if the server omitted it.",
"title": "Description"
},
"inputSchema": {
"additionalProperties": true,
"description": "Complete inputSchema from tools/list; used to validate the intended arguments and match a supported tool manifest.",
"title": "Inputschema",
"type": "object"
},
"annotations": {
"additionalProperties": true,
"description": "Tool annotations from tools/list, such as read-only or destructive hints; use an empty object when absent.",
"title": "Annotations",
"type": "object"
},
"execution": {
"anyOf": [
{
"additionalProperties": true,
"type": "object"
},
{
"type": "null"
}
],
"default": null,
"description": "Tool execution metadata from tools/list, when present.",
"title": "Execution"
},
"outputSchema": {
"anyOf": [
{
"additionalProperties": true,
"type": "object"
},
{
"type": "null"
}
],
"default": null,
"description": "Tool output schema from tools/list, when present.",
"title": "Outputschema"
},
"icons": {
"anyOf": [
{
"items": {
"additionalProperties": true,
"type": "object"
},
"type": "array"
},
{
"type": "null"
}
],
"default": null,
"description": "Tool icons from tools/list, when present.",
"title": "Icons"
},
"_meta": {
"anyOf": [
{
"additionalProperties": true,
"type": "object"
},
{
"type": "null"
}
],
"default": null,
"description": "Relevant tool metadata from tools/list, when present.",
"title": "Meta"
}
},
"required": [
"name",
"description",
"inputSchema"
],
"title": "NativeToolRecord",
"type": "object",
"description": "The complete relevant Tool record returned by the source server's tools/list."
},
"arguments": {
"additionalProperties": true,
"description": "Arguments intended for the source MCP tools/call request being evaluated. The evaluator does not execute that call.",
"title": "Arguments",
"type": "object"
}
},
"required": [
"source",
"tool",
"arguments"
],
"additionalProperties": false,
"title": "NativeMcpEvaluationRequest"
}커뮤니티
증거