host_report
Per-host findings. Requires a bearer credential.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| host | Yes |
Per-host findings. Requires a bearer credential.
| Name | Required | Description | Default |
|---|---|---|---|
| host | Yes |
Changes observed during successful MCP inspections.
Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
No annotations are provided, so the description carries the full behavioral burden. It does disclose one useful trait, the bearer-credential requirement, but says nothing about read-only safety, rate limits, or result shape.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
Two short sentences with no filler, and the resource scope is front-loaded ahead of the auth note. The telegram style leaves no wasted words.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
No output schema and no annotations, so the description is the only source of behavioral and return-value context. It omits what 'findings' contain, the response format, and the meaning of the host argument, leaving a single-parameter tool under-documented.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
With schema description coverage at 0%, the description must clarify the lone 'host' parameter, but it says nothing about its expected format (hostname, IP, ID). Only one required parameter and no enums, so the burden is modest, but the gap is real.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
The phrase 'Per-host findings' names the resource scope (a single host) and implies a report of findings, but supplies no verb and no indication of what kind of findings or data the tool returns. It is distinguishable from bulk_export by the 'per-host' scoping, but only loosely from absence_rate.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
There is no guidance on when to use this tool versus the sibling absence_rate or bulk_export, and no stated exclusions or preconditions beyond the credential requirement. The agent must infer usage entirely.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
Add one secure layer between your agents and this server.