Skip to main content
Glama

invoke_product

Idempotent

Execute an available product using its version and schema. A retired product returns product_retired without work or payment. Keep run_id private. Max charge is a cap, never consent to a larger amount.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
inputNo
versionYes
agent_idNoOptional random UUID pseudonym (e.g. crypto.randomUUID()); not authenticated identity. Omit if unavailable.
quote_idNo
product_idYes
prepared_idNo
referral_codeNoPublic referral code returned by registration. First-party tools only; preserve it in the original invoke body on every replay.
idempotency_keyYes
review_secret_hashNoOptional SHA-256 hex of caller-kept atbr_ secret (32 random bytes). Bound to this paid request; never send the raw secret here.
payment_amount_atomicNoCanonical decimal USDC atomic-unit string (6 decimals). Protocol uint256 maximum 115792089237316195423570985008687907853269984665640564039457584007913129639935. No business maximum.
max_charge_usdc_atomicYesCaller spending cap. Canonical decimal string recommended; safe integer numbers accepted for compatibility. Does not select an amount.
success_contract_sha256NoOptional SHA-256 of the published canonical success contract. Mismatch prevents new work or payment. Quotes inherit their stored success pin even when this field is omitted.
payment_requirements_sha256NoOptional SHA-256 of the complete canonical PaymentRequirements object under agenttoolbox-json-v1. Exact string/address case is significant.

Schema Changelog

Changes observed during successful MCP inspections.

  1. Changed4 schema fields changed
    • addedInput schema / properties / agent_id / description
      Added value: +"Optional random UUID pseudonym (e.g. crypto.randomUUID()); not authenticated identity. Omit if unavailable."
    • addedInput schema / properties / payment_requirements_sha256
      Added value: +{
      +  "description": "Optional SHA-256 of the complete canonical PaymentRequirements object under agenttoolbox-json-v1. Exact string/address case is significant.",
      +  "pattern": "^[0-9a-f]{64}$",
      +  "type": "string"
      +}
    • addedInput schema / properties / referral_code
      Added value: +{
      +  "description": "Public referral code returned by registration. First-party tools only; preserve it in the original invoke body on every replay.",
      +  "pattern": "^ref_[0-9a-f]{8}-[0-9a-f]{4}-4[0-9a-f]{3}-[89ab][0-9a-f]{3}-[0-9a-f]{12}$",
      +  "type": "string"
      +}
    • addedInput schema / properties / success_contract_sha256
      Added value: +{
      +  "description": "Optional SHA-256 of the published canonical success contract. Mismatch prevents new work or payment. Quotes inherit their stored success pin even when this field is omitted.",
      +  "pattern": "^[0-9a-f]{64}$",
      +  "type": "string"
      +}
  2. Changed10 schema fields changed
    • addedInput schema / properties / max_charge_usdc_atomic / anyOf
      Added value: +[
      +  {
      +    "description": "Canonical decimal USDC atomic-unit string (6 decimals). Protocol uint256 maximum 115792089237316195423570985008687907853269984665640564039457584007913129639935. No business maximum.",
      +    "pattern": "^(0|[1-9][0-9]{0,77})$",
      +    "type": "string"
      +  },
      +  {
      +    "maximum": 9007199254740991,
      +    "minimum": 0,
      +    "type": "integer"
      +  }
      +]
    • addedInput schema / properties / max_charge_usdc_atomic / description
      Added value: +"Caller spending cap. Canonical decimal string recommended; safe integer numbers accepted for compatibility. Does not select an amount."
    • removedInput schema / properties / max_charge_usdc_atomic / maximum
      Removed value: -1000000000
    • removedInput schema / properties / max_charge_usdc_atomic / minimum
      Removed value: -0
    • removedInput schema / properties / max_charge_usdc_atomic / type
      Removed value: -"integer"
    • addedInput schema / properties / payment_amount_atomic
      Added value: +{
      +  "description": "Canonical decimal USDC atomic-unit string (6 decimals). Protocol uint256 maximum 115792089237316195423570985008687907853269984665640564039457584007913129639935. No business maximum.",
      +  "pattern": "^(0|[1-9][0-9]{0,77})$",
      +  "type": "string"
      +}
    • addedInput schema / properties / prepared_id
      Added value: +{
      +  "format": "uuid",
      +  "pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
      +  "type": "string"
      +}
    • addedInput schema / properties / quote_id
      Added value: +{
      +  "format": "uuid",
      +  "pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
      +  "type": "string"
      +}
    • addedInput schema / properties / review_secret_hash
      Added value: +{
      +  "description": "Optional SHA-256 hex of caller-kept atbr_ secret (32 random bytes). Bound to this paid request; never send the raw secret here.",
      +  "pattern": "^[0-9a-f]{64}$",
      +  "type": "string"
      +}
    • changedInput schema / required
      Previous value: -[
      -  "product_id",
      -  "version",
      -  "input",
      -  "max_charge_usdc_atomic",
      -  "idempotency_key"
      -]New value: +[
      +  "product_id",
      +  "version",
      +  "max_charge_usdc_atomic",
      +  "idempotency_key"
      +]
  3. First observed

TDQS

A3.5/5.0
Behavior4/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Annotations already cover the safety profile (not read-only, idempotent, non-destructive, closed-world), so the description's job is to add beyond that. It does: the retired-product short-circuit behavior, the instruction to keep run_id private, and the clarification that max_charge is a cap rather than a consent-to-charge. These are non-obvious operational facts an agent could not infer from annotations alone.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness4/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Three short, front-loaded sentences with no filler; the core action leads and the safety caveats follow. Dense and effective, though the final two sentences are terse enough to be slightly cryptic out of context.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness2/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

This is a 13-parameter, paid, mutating tool with no output schema, so the description bears most of the explanatory burden. It covers the payment cap and the retired-product case but omits the successful return shape, the relationship between the several ID parameters, and any retry/idempotency-replay guidance that the replay-sensitive referral_code description hints at elsewhere.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters3/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 54% across 13 parameters, so several fields (product_id, version, idempotency_key, quote_id, prepared_id) carry no descriptions anywhere. The description reinforces the version requirement and the meaning of the charge cap, but does nothing to disambiguate the quote_id/prepared_id/product_id flow, so it only partially compensates for the coverage gap.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose4/5

Does the description clearly state what the tool does and how it differs from similar tools?

States a specific verb and resource: 'Execute an available product using its version and schema.' The verb is precise and distinct from the read-oriented siblings (get_product, list_products) and the submission siblings. It stops short of naming the sibling it complements, so it stops at 4 rather than 5.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines3/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

Gives one concrete usage condition — a retired product returns product_retired without work or payment — which is useful routing information. However, it never states prerequisites (a valid product_id/version pair, whether quote_id or prepared_id is expected first) or when to prefer this over get_product, leaving usage implied rather than specified.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.