Skip to main content
Glama

Verify a TRACE Trust Record

verify_trace_record

TRACE v0.2 conformance checks on one Trust Record, stateless, no account: schema (vendored trace-claim.json), profile, subject URI, software-only runtime rule, policy digest, public-only confirmation key, the embedded signature (EdDSA, ES256 or ES384 with the key in cnf.jwk), appraisal, delegation link shape and references. Nothing is fetched: resolvers are checked as URIs only. record_sha256 is the RFC 8785 digest of the complete record, signature included — the value a child hop puts in delegation.parent_record_hash.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
recordYesA TRACE v0.2 Trust Record: the file contents as a string, or the parsed object.

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault
noteYes
checksYes
summaryYes
verdictYes
failing_checkYes
record_sha256Yes

Schema Changelog

Changes observed during successful MCP inspections.

  1. Added

TDQS

A4.7/5.0
Behavior5/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

With no annotations, the description carries the full burden and does so thoroughly. It discloses statelessness, no account, no network fetcing, URI-only resolver checks, software-only runtime rule, public-only confirmation key, accepted signature algorithms, and the exact meaning of record_sha256 as the RFC 8785 digest including the signature.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness5/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Dense but every segment earns its place: scope is front-loaded, the conformance checklist is structured with a colon, and the digest clarification adds necessary precision without fluff.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness5/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a stateless single-record verification tool with a fully documented parameter and an output schema, this description covers all invocation-relevant behavior: what is checked, what algorithms are accepted, that nothing is fetched, and how the digest behaves. No important gap remains.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters4/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

The schema already documents the single record parameter at 100% coverage, giving a baseline of 3. The description adds meaning by explaining the expected record contents, accepted signature key formats, and the role of record_sha256 in delegation.parent_record_hash, which helps an agent construct a valid input.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose5/5

Does the description clearly state what the tool does and how it differs from similar tools?

States a specific action (verify), a specific resource (one TRACE v0.2 Trust Record), and a detailed checklist of conformance aspects: schema, profile, subject URI, signature, appraisal, delegation shape, references. This clearly distinguishes it from sibling tools that verify chains or receipts.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines4/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

The scope is clear: it verifies a single Trust Record and is stateless with no account or fetching. This implies when to use it versus chain/receipt verification, but it does not explicitly name alternatives or say when not to use it.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.