v0.2.0 · live
CAPFRAME
← leaderboard/SpaceMolt/tool · cancel_commission
§ toolhttpSpaceMolt

cancel_commission

on https://game.spacemolt.com/mcp

Severity

critical0
high1
medium2
low0
info0

3 findings on this tool

  1. highexcessive agencyf-r3-cancel_commission

    Tool `cancel_commission` name implies a side effect that is not declared

    `cancel_commission` looks like a side-effecting tool (its name contains a mutation verb), but its `side_effects` declaration is []. A policy synthesizer cannot produce safe rules for this tool because it cannot tell what it actually does.

    fix: Declare the tool's true side effects explicitly. If the tool is genuinely read-only, rename it to match (e.g. `email.preview` rather than `email.send`).

    OWASP LLM08NIST MEASURE-2.6ATLAS T0051CAST-01
  2. mediumunconstrained inputf-r1-cancel_commission

    Tool `cancel_commission` accepts unconstrained string input

    The following string parameter(s) have no `maxLength` constraint: `commission_id`, `session_id`. Unbounded strings let an attacker stuff arbitrary payloads through the tool, including indirect-injection content.

    fix: Add a `maxLength` to each string property, or constrain with an `enum` or `pattern`. Most legitimate tool inputs fit under a few hundred bytes.

    OWASP LLM01NIST MEASURE-2.3ATLAS T0051CAST-03
  3. mediumexcessive agencyf-r5-cancel_commission

    Tool `cancel_commission` description mentions money but no `money` side-effect is declared

    Description: "Cancel a pending or in-progress ship commission (Cancel a commission that hasn't finished yet. While the yard is still sourcing, all unspent or recovered sourcing funds, labor, and the yard fee are refunded, and all gathered materials return to station storage. After sourcing, the yard fee plus 50% of the remaining paid build cost is refunded. Fully player-supplied orders return all requirements; partial-sourcing orders return the materials you initially contributed. Faction-funded cancellations return materials to faction storage and apply the faction cancellation policy.)" -- this references money/payment/refund/etc., but the declared side_effects ([]) don't include `money`. A capframe-bind policy that relies on declared side_effects to scope spend caveats will under-scope this tool.

    fix: Add `money` to the tool's `side_effects` declaration, or rewrite the description to clarify that no actual money moves.

    OWASP LLM08NIST MEASURE-2.6ATLAS T0040CAST-01

About this tool

cancel_commission is one of 219 tools exposed by SpaceMolt. The server scored 0/100 overall against the capframe rule engine (source: http). Last scanned 2026-09-03.

The findings above are emitted by the public capframe.findings.v1 schema. Disagree with one? Open an issue.