x402-password-entropy
Password Entropy: Password Entropy
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| text | No | Text to process | |
| input | No | Input to process | |
| password | No | Password to process |
Password Entropy: Password Entropy
| Name | Required | Description | Default |
|---|---|---|---|
| text | No | Text to process | |
| input | No | Input to process | |
| password | No | Password to process |
Changes observed during successful MCP inspections.
Input schema / properties / textAdded value: +{
+ "description": "Text to process",
+ "type": "string"
+}Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
No annotations are provided, so the description carries the full behavioral burden, and it delivers nothing: no indication of whether it is a pure computation or a network call, what the cost/model is, or what the response contains. The name suggests a read-only computation, but this is inference, not disclosure.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
Extremely short, but this is under-specification rather than conciseness: the single sentence duplicates the title and conveys zero information. Shortness without content does not earn credit.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
No annotations, no output schema, three ambiguous optional parameters, and no description of the result format or algorithm. For a tool whose only disambiguating information must come from the description, this is completely inadequate.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
Schema description coverage is nominally 100%, which sets a baseline of 3, but the schema descriptions are vacuous placeholders ("Text to process", "Input to process", "Password to process"). With three overlapping, effectively interchangeable string params and zero required fields, the description is the only place that could say which one to use, and it says nothing.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
The description is a verbatim restatement of the tool name/title ("Password Entropy: Password Entropy") with no verb and no stated operation. An agent can guess it computes password entropy, but nothing distinguishes it from siblings like x402-password-strength, x402-is-strong-password, or x402-password-leak. This is a tautology per the rubric definition.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
No when-to-use guidance, no prerequisites, and no mention of the closely related password siblings. The agent is given no basis for choosing this tool over x402-password-strength or x402-shannon-entropy.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
Add one secure layer between your agents and this server.