{"generated_at":"2026-08-17T10:36:11+00:00","item":{"added_at":"2026-01-13","analysis_method":"capability_triage","category":"Web Connector","description":"Connect AI assistants to your MotherDuck data warehouse. Explore, visualize, and manage data using natural language-no SQL skills required. Create Dives: int...","did":"com-motherduck-api-motherduck","homepage_url":"","icon":"https://motherduck.com/favicon.ico","id":"com.motherduck.api/motherduck","installs":0,"last_scanned":"","license":"","long_description":"Connect AI assistants to your MotherDuck data warehouse. Explore, visualize, and manage data using natural language-no SQL skills required. Create Dives: interactive visualizations that let you save and share answers with your team, staying up-to-date with your latest data. Works with real-world data without requiring semantic models or pre-configuration. Your AI assistant acts like a data analyst, exploring, validating, analyzing, and visualizing data iteratively to answe...","name":"MotherDuck","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=com-motherduck-api-motherduck&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"MotherDuck Corporation","publisher_url":"https://motherduck.com/","repository_url":"","risk":"high","risk_severity":"high","security_risks":[{"description":"This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.","evidence":"Connector has 15 tools; permissions on claude.ai/directory: \"Read and write\". Data flows out of the connected service into the model.","remediation":{"block_tool_categories":[],"steps":["Connect using an account that only has access to the information you actually want Claude to read - not your main admin login.","When you grant access, pick the smallest set of folders, mailboxes, or channels possible.","Check the connector's activity log every so often to make sure nothing unexpected is being read."]},"risk_type":"reads_private_data","severity":"medium","title":"Reads your private information"},{"description":"This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.","evidence":"2 state change tools on this connector - e.g. save_dive, update_dive.","remediation":{"block_tool_categories":["state_change"],"steps":["Try the connector on a test account first to see what it changes before letting it touch your real records.","Where the connected service supports it, give Claude read-only access and only allow writes for the specific things you need updated.","In the tools list below, turn off any tool you don't actively need - the ones tagged Block are the most important to disable."]},"risk_type":"modifies_data","severity":"medium","title":"Can change or update your information"},{"description":"This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.","evidence":"1 destructive tool on this connector - e.g. delete_dive.","remediation":{"block_tool_categories":["destructive"],"steps":["In the tools list below, turn off any tool tagged Block - most workflows don't need Claude to delete anything.","If you really do need deletion, use a login that doesn't have delete permission and have a person handle removals manually.","Make sure the connected service has a trash / recycle bin enabled so accidental deletes can be recovered."]},"risk_type":"deletes_data","severity":"high","title":"Can permanently delete data"},{"description":"Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.","evidence":"Server runs at a vendor-hosted endpoint; queries and responses pass through the publisher's infrastructure.","remediation":{"block_tool_categories":[],"steps":["Treat anything you tell this connector as if you sent it directly to the third-party company - because you did.","Check how long that company keeps your data and how to delete it.","Avoid putting health info, customer names, or payment details into this connector unless you have a written agreement with that company."]},"risk_type":"forwards_data_to_third_party","severity":"low","title":"Sends your data to outside companies"}],"signature_status":"unknown","source_code_reviewed":false,"tags":["network_access","reads_private_data","database_access","deletes_data"],"tools":[{"description":"Lists all databases in your MotherDuck account.","name":"list_databases"},{"description":"Lists database shares that have been shared with you.","name":"list_shares"},{"description":"Lists tables and views in a MotherDuck database.","name":"list_tables"},{"description":"Lists columns of a table or view with types and comments.","name":"list_columns"},{"description":"Fuzzy searches across databases, schemas, tables, columns, and shares.","name":"search_catalog"},{"description":"Executes SQL queries against MotherDuck databases.","name":"query"},{"description":"Asks questions about DuckDB or MotherDuck documentation.","name":"ask_docs_question"},{"description":"Executes SQL queries that can modify data or schema in MotherDuck.","name":"query_rw"},{"description":"Loads instructions for creating MotherDuck Dives.","name":"get_dive_guide"},{"description":"Saves a new Dive to your MotherDuck workspace.","name":"save_dive","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Reads a specific Dive by ID, including its full component code.","name":"read_dive"},{"description":"Updates an existing Dive's title, description, or content.","name":"update_dive","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Permanently deletes a Dive by ID.","name":"delete_dive","risk":{"category":"destructive","level":"high","recommendation":"Block by default. Only enable for read-only or sandbox accounts; require explicit human confirmation for any destructive action.","why":"Irreversibly removes data or resources. A prompt-injection or mistaken instruction could destroy production data with no recovery path."}},{"description":"Lists all Dives in your MotherDuck workspace.","name":"list_dives"},{"description":"Shares the data for a Dive with your organization.","name":"share_dive_data","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}}],"tools_count":15,"type":"web_connector","url":"https://claude.ai/directory/0929a5c7-38ce-40ab-8aad-af9ce34553c7","uuid":"73123dca-5e40-555b-8fad-5c9acd15305d","version":""},"query_key":"motherduck corporation motherduck","schema_version":1,"status":"match"}
