Skip to main content
Glama
josimarh

azure-mcp-pilot

by josimarh

export_privilege_timeline_report

Read-onlyIdempotent

Generate a chronological report of top grants and revokes by identity, role, and scope over a set period for Azure RBAC and Entra ID auditing.

Instructions

Gera relatório de timeline com top grants/revokes por identidade, role e escopo.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
topNo
daysNo

Schema Changelog

Changes observed during successful MCP inspections.

  1. First observedv0.1.0

TDQS

C2.4/5.0
Behavior2/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Annotations already declare readOnlyHint, idempotentHint, destructiveHint=false, and openWorldHint, so safety is covered. The description adds no behavioral context beyond the annotations: it does not say where the export goes, what format it takes, whether it is synchronous, or whether large day ranges are bounded.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness4/5

Is the description appropriately sized, front-loaded, and free of redundancy?

A single, front-loaded sentence with no filler. It is efficient, though its brevity contributes to the coverage gaps noted elsewhere.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness2/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a tool with two undocumented parameters, no output schema, and many timeline siblings, the description does not supply enough to call it correctly or to route to it over alternatives. Missing are the time-window semantics, output/export format, and any differentiation from sibling timeline tools.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters2/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

Schema description coverage is 0%, so the description carries the full burden for the two parameters. It only loosely gestures at "top" (top grants/revokes) and says nothing about the "days" window or how the two interact, leaving both parameters effectively undocumented.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose3/5

Does the description clearly state what the tool does and how it differs from similar tools?

The description names a concrete verb ("Gera relatório") and resource (timeline report) and specifies the report contents (top grants/revokes by identity, role, scope). However, it does not distinguish this tool from close siblings like summarize_privilege_timeline, get_identity_privilege_timeline, or list_privilege_timeline_events, leaving the agent to guess which timeline artifact it produces.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines2/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

There is no when-to-use guidance, no prerequisites, and no mention of alternatives despite a crowded set of timeline-related siblings. The verb "export" is the only hint that this produces a file/report rather than an inline result, and that is left implicit.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Deploy Server

Other Tools