fingerprint_waf
Provide a target URL to identify if it is protected by a Web Application Firewall (WAF).
Instructions
Detect WAF.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| url | Yes |
Provide a target URL to identify if it is protected by a Web Application Firewall (WAF).
Detect WAF.
| Name | Required | Description | Default |
|---|---|---|---|
| url | Yes |
Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations and no additional description, the agent gets zero behavioral disclosure. The description does not indicate whether the tool sends network requests, what output format to expect, or any potential side effects or prerequisites.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.
Is the description appropriately sized, front-loaded, and free of redundancy?
The description is concise at two words, but this is under-specification rather than effective brevity. It omits essential details and does not earn its place by providing unique value beyond the tool name.
Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.
Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?
Given the absence of annotations, output schema, and any behavioral context, the description is inadequate for an agent to understand the tool's full capabilities. It only states the primary function without any supporting details.
Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.
Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?
Schema description coverage is 0%, and the description does not explain the 'url' parameter. While the parameter name is somewhat self-explanatory, the description fails to compensate for the lack of schema details, as required for low coverage.
Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.
Does the description clearly state what the tool does and how it differs from similar tools?
The description 'Detect WAF' clearly states the tool's action (detect) and resource (WAF). It is specific to WAF detection and unambiguous, though it does not elaborate on scope or distinguish it from related fingerprinting tools like fingerprint_url.
Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.
Does the description explain when to use this tool, when not to, or what alternatives exist?
No usage guidance is provided. There is no mention of when to use this tool versus alternative fingerprinting tools among the siblings (e.g., tools_whatweb, fingerprint_headers), leaving the agent without selection criteria.
Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/cryptopepy/chungus-kali-mcp'
If you have feedback or need assistance with the MCP directory API, please join our Discord server