Skip to main content
Glama

concordance

shelf_read

Read one member's shelf. Access is by PROOF, not by naming a key: an unproven caller sees only the promoted commons. To see your own rings (private + shelf) or a friend's shelf ring, pass viewer (a key), at (unix seconds) and sig — a signature over nh-shelf-read:v1::: made with the viewer key on your own machine (never send the key). Nothing anywhere records who read what.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
atNo
sigNo
memberYes
viewerNo

Schema Changelog

Changes observed during successful MCP inspections.

  1. Changed2 schema fields changed
    • addedInput schema / properties / at
      Added value: +{
      +  "maximum": 1000000000000,
      +  "minimum": -1000000000000,
      +  "type": "integer"
      +}
    • addedInput schema / properties / sig
      Added value: +{
      +  "maxLength": 4000,
      +  "type": "string"
      +}
  2. Changed3 schema fields changed
    • addedInput schema / additionalProperties
      Added value: +false
    • addedInput schema / properties / member / maxLength
      Added value: +4000
    • addedInput schema / properties / viewer / maxLength
      Added value: +4000
  3. Added

TDQS

A4.8/5.0
Behavior5/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

With no annotations, the description carries the full burden, and it delivers: it discloses proof-based authorization, the visibility boundary for unproven callers, the exact signature payload, and the privacy property that no read is recorded. This goes well beyond the schema and materially shapes expectations for using the tool.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness5/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Three dense sentences, each earning its place: the action, the authorization model, and the authentication recipe. The most important fact (what the tool does) is front-loaded, and the security-critical signing detail is placed where it directly supports invocation.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness5/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a 4-parameter tool with no output schema and no annotations, the description provides everything needed to invoke it correctly: required parameter, optional auth parameters, exact signature construction, and behavioral expectations. The absence of a documented return shape is acceptable because the schema provides no output contract and the read action is well scoped.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters5/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 0%, so the description must define the parameters, and it does: member is the target shelf, viewer is a key, at is unix seconds, and sig is a signature over a precisely specified string. It even explains why these parameters are needed and warns the agent not to send the secret key.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose5/5

Does the description clearly state what the tool does and how it differs from similar tools?

The description opens with a specific verb and resource: "Read one member's shelf." It further distinguishes the tool from sibling read-type tools by emphasizing proof-based access rather than key-based naming, and by contrasting the unproven caller's view (promoted commons) with private/friend shelf access.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines4/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

The description gives clear conditions of use: no proof means only promoted commons are visible; to read one's own rings or a friend's shelf ring, the caller must pass viewer, at, and sig. It does not name alternative sibling tools explicitly, so it stops short of full when-not-to-use guidance, but the access rules are unambiguous.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.