Leash Index

Index / payments

BorealHost

ai-borealhost-mcp declares 152 capabilities across 152 tools, with 3 critical issues.

100/100 exposureHigh exposure

Manifest retrieved 2026-09-14 from tools/list on https://borealhost.ai/mcp/, published in the official MCP registry as ai.borealhost/mcp 0.4.2. Not verified by a maintainer.

Issues

These describe what this server's manifest declares. A product can provide controls that MCP has no way to express — token revocation, an admin console, audit logs — and this page cannot see them. The absence of a declaration is not evidence that a control is absent.

critical · no-revocation · All 152 tools

152 of 152 tools declare no way for the customer to switch them off once granted. This applies to every tool because MCP has no field in which to declare a revocation mechanism; the product may provide one outside MCP that a manifest cannot show.

critical · irreversible-uncapped · 26 of 152 tools

26 tools are classified as irreversible and declare no limit.

critical · uncapped-spend · 1 of 152 tools

1 tool is classified as moving money and declares no dollar limit. A cap on the number of payments does not bound their amount.

high · no-expiry · All 152 tools

152 of 152 tools declare no expiry. This applies to every tool because MCP has no field in which to declare an expiry; the product may provide one outside MCP that a manifest cannot show.

high · no-audit-trail · All 152 tools

152 of 152 tools declare no record of their actions that the customer can read. This applies to every tool because MCP has no field in which to declare an audit requirement; the product may provide one outside MCP that a manifest cannot show.

high · uncapped-write · 67 of 152 tools

67 tools can modify data and declare no limit.

low · uncapped-read · 59 of 152 tools

59 tools can read data and declare no limit.

Declared capabilities

How each tool was read. declared means the server's own annotation said so — self-reported and unverified. inferred is from the tool's name. assumed means nothing indicated either way.

ToolRead asBasis
registerread inferred
set_api_keywrite inferred
whoamiread inferred
request_api_keywrite inferred
claim_api_keywrite assumed
list_plansread inferred
create_checkoutwrite inferred
update_checkoutwrite inferred
complete_checkoutpay inferred
get_checkout_statusread inferred
list_checkoutsread inferred
cancel_checkoutdelete inferred
add_sitewrite inferred
set_site_typewrite inferred
get_walletread inferred
get_site_statusread inferred
manage_dnsdelete inferred
install_appwrite assumed
get_app_statusread inferred
list_appsread inferred
list_snapshotsread inferred
create_snapshotwrite inferred
create_b2_snapshotwrite inferred
delete_snapshotdelete inferred
rollback_snapshotwrite assumed
get_snapshot_usageread inferred
schedule_snapshotwrite assumed
cancel_scheduled_snapshotdelete inferred
list_backupsread inferred
create_backupwrite inferred
restore_backupwrite assumed
get_metricsread inferred
scalewrite assumed
decommissiondelete inferred
update_accountwrite inferred
delete_accountdelete inferred
list_subscriptionsread inferred
get_billing_portalread inferred
rotate_keywrite assumed
create_api_keywrite inferred
list_api_keysread inferred
revoke_api_keydelete inferred
get_ssh_inforead inferred
add_ssh_keywrite inferred
list_filesread inferred
read_fileread inferred
write_filewrite inferred
upload_filewrite inferred
delete_filedelete inferred
create_directorywrite inferred
list_pluginsread inferred
list_themesread inferred
manage_pluginwrite assumed
manage_themewrite assumed
wp_check_updateswrite inferred
wp_update_allwrite inferred
list_cronread inferred
add_cronwrite inferred
delete_crondelete inferred
ssl_inforead inferred
ssl_renewwrite assumed
list_php_versionsread inferred
switch_phpwrite assumed
cache_statusread inferred
cache_flushwrite assumed
cache_togglewrite assumed
get_database_inforead inferred
optimize_databasewrite assumed
database_search_replaceread inferred
list_databasesread inferred
list_tablesread inferred
execute_queryread inferred
get_stack_inforead inferred
get_resource_snapshotread inferred
cloudflare_proxy_statusread inferred
cloudflare_set_proxywrite inferred
cloudflare_purge_cachedelete inferred
list_ftp_accountsread inferred
create_ftp_accountwrite inferred
remove_ftp_accountdelete inferred
list_alert_rulesread inferred
create_alert_rulewrite inferred
delete_alert_ruledelete inferred
run_malware_scanwrite assumed
list_firewall_rulesread inferred
add_firewall_rulewrite inferred
remove_firewall_ruledelete inferred
get_logsread inferred
list_domainsread inferred
search_domainread inferred
register_domainwrite assumed
domain_detailread inferred
list_subdomainsread inferred
add_subdomainwrite inferred
delete_subdomaindelete inferred
link_domainwrite assumed
get_site_nginx_snippetread inferred
set_site_nginx_snippetwrite inferred
set_domain_usagewrite inferred
domain_settingswrite inferred
list_domain_dnsread inferred
add_domain_dnswrite inferred
delete_domain_dnsdelete inferred
list_modulesread inferred
toggle_modulewrite assumed
list_compute_typesread inferred
list_compute_imagesread inferred
launch_compute_instancewrite assumed
list_compute_instancesread inferred
get_compute_instanceread inferred
start_compute_instancewrite assumed
stop_compute_instancewrite assumed
reboot_compute_instancewrite assumed
terminate_compute_instancewrite assumed
list_compute_volumesread inferred
get_compute_volumeread inferred
create_compute_volumewrite inferred
adopt_compute_instancewrite assumed
detach_compute_volumewrite assumed
attach_compute_volumewrite assumed
snapshot_compute_volumewrite assumed
delete_compute_volumedelete inferred
container_actionwrite assumed
list_support_ticketsread inferred
get_support_ticketread inferred
create_support_ticketwrite inferred
reply_support_ticketsend inferred
get_backup_retentionread inferred
set_backup_retentionwrite inferred
delete_backupdelete inferred
list_redirectsread inferred
add_redirectwrite inferred
delete_redirectdelete inferred
set_force_httpswrite inferred
list_db_usersread inferred
manage_db_userwrite assumed
transfer_out_domainwrite inferred
enable_wildcardwrite assumed
upload_ssl_certwrite inferred
get_email_statusread inferred
setup_emailsend inferred
create_mailboxwrite inferred
delete_mailboxdelete inferred
reset_mailbox_passwordwrite assumed
get_webmail_urlread inferred
list_webhooksread inferred
create_webhookwrite inferred
delete_webhookdelete inferred
test_webhooksend inferred
get_smtp_relayread inferred
enable_smtp_relaysend inferred
revoke_smtp_relaydelete inferred
Answering this question about your own agent? Media Yard LLC runs a fixed-scope Agent Permission Audit: the same reading applied to your agent surface, delivered as a dated artifact you can hand to a customer's security review. See what it includes and costs, or write to support@leashkit.com. Buying one does not change this page, its score or its place in the index — see Independence.
Maintain this server? If this page misreads your manifest, or your server has changed, submit its current tools/list response and it will be re-scored and dated. Corrections are published alongside the original, not in place of it.