Skip to main content
Glama

SignalLayer

x402 Preflight Security & Payment Risk Check

agent_preflight
Read-onlyIdempotent

Before paying, transferring to, or interacting with an unfamiliar machine resource, x402 endpoint, recipient, or Base address. Do NOT use when: You only need market execution conditions or webpage extraction. Price: $0.01 USDC via x402. If uncertain which SignalLayer primitive matches the task, call signal_layer_router first for free.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
intentNopay
targetYes
routingIdNo
maxPriceUsdNo
expectedNetworkNo

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault
dataNo
metaNo
toolNo
statusNo
decisionNo
evidenceNo
warningsNo
freshnessNo
requestIdNo
nextActionsNo

Schema Changelog

Changes observed during successful MCP inspections.

  1. Changed1 schema field changed
    • changedOutput schema / (root)
      Previous value: -nullNew value: +{
      +  "$schema": "https://json-schema.org/draft/2020-12/schema",
      +  "additionalProperties": {},
      +  "properties": {
      +    "data": {
      +      "additionalProperties": {},
      +      "propertyNames": {
      +        "type": "string"
      +      },
      +      "type": "object"
      +    },
      +    "decision": {
      +      "additionalProperties": {},
      +      "properties": {
      +        "confidence": {
      +          "maximum": 1,
      +          "minimum": 0,
      +          "type": "number"
      +        },
      +        "score": {
      +          "type": "number"
      +        },
      +        "summary": {
      +          "type": "string"
      +        },
      +        "verdict": {
      +          "type": "string"
      +        }
      +      },
      +      "type": "object"
      +    },
      +    "evidence": {
      +      "items": {},
      +      "type": "array"
      +    },
      +    "freshness": {
      +      "additionalProperties": {},
      +      "properties": {
      +        "checkedAt": {
      +          "type": "string"
      +        },
      +        "maxAgeSeconds": {
      +          "type": "number"
      +        }
      +      },
      +      "type": "object"
      +    },
      +    "meta": {
      +      "additionalProperties": {},
      +      "propertyNames": {
      +        "type": "string"
      +      },
      +      "type": "object"
      +    },
      +    "nextActions": {
      +      "items": {},
      +      "type": "array"
      +    },
      +    "requestId": {
      +      "type": "string"
      +    },
      +    "status": {
      +      "type": "string"
      +    },
      +    "tool": {
      +      "type": "string"
      +    },
      +    "warnings": {
      +      "items": {},
      +      "type": "array"
      +    }
      +  },
      +  "type": "object"
      +}
  2. First observed

TDQS

A3.8/5.0
Behavior4/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Annotations already cover the safety profile (readOnlyHint=true, destructiveHint=false, idempotentHint=true), and the description adds genuinely non-derivable context: the tool costs $0.01 USDC via x402, unlike the free router. It still omits what happens on a failed/blocked check and any latency or retry behavior, so it is not exhaustive.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness4/5

Is the description appropriately sized, front-loaded, and free of redundancy?

Very short and front-loads the trigger condition, cost, and fallback in that order. The opening is a sentence fragment with no subject or verb, which costs a little clarity but wastes no words.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness3/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

An output schema exists, so return values need no explanation, and cost plus sibling routing are covered. For a paid tool with 5 largely undocumented parameters, though, an agent still cannot tell how target, intent, or maxPriceUsd constrain the call — a real gap for something that charges per invocation.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters2/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 0% across 5 parameters, so the description must carry the burden and largely does not. The only hint is that 'target' may be a resource, x402 endpoint, recipient, or Base address; intent, maxPriceUsd, expectedNetwork, and routingId are never explained or distinguished from each other.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose4/5

Does the description clearly state what the tool does and how it differs from similar tools?

Combined with the title ('Preflight Security & Payment Risk Check'), the description makes clear this is a pre-payment risk gate, and it enumerates the concrete targets it covers (machine resource, x402 endpoint, recipient, Base address). However, the description itself is written as a timing clause rather than a verb+resource statement, so it never directly says what the tool returns (a risk verdict), leaning on the title to close the gap.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines5/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

Explicit trigger ('Before paying, transferring to, or interacting with an unfamiliar ... address'), explicit exclusion ('Do NOT use when: You only need market execution conditions or webpage extraction'), and an explicit alternative ('call signal_layer_router first for free'). This routes the agent across all four siblings without inference.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Try in Browser

Glama MCP Gateway

Add one secure layer between your agents and this server.

Resources