Find functions that fire/handle a remote (IDA xrefs)
find-remote-xrefsResolve a RemoteEvent, RemoteFunction, Bindable, or Function from a Luau expression, then scan GC functions to report which closures reference it via upvalues or constants.
Instructions
Resolve a RemoteEvent / RemoteFunction / BindableEvent / BindableFunction from a Luau expression, then walk every function in the GC and report which ones reference it — the runtime equivalent of cross-referencing a network endpoint. A referrer references the remote if it appears in the function's upvalues OR constants, which surfaces the closures that FireServer/InvokeServer/OnClientEvent-connect this remote. Each xref reports __fnInfo (ptr/name/source/line/nparams/nups) plus 'via' ("upvalue" or "constant"); the response includes the remote's ClassName. Requires getgc + getupvalues/getconstants; caps the scan and flags truncation. Signature: { remotePath: string, limit: any?, maxScan: any?, threadContext: number? }. Phase: observe; cost=medium; idempotency=read-only. Requires: active-client, resolved-target. Produces: bounded-candidates. Safety: read-only. On failure: inspect tool-schema for exact fields, defaults, constraints, and an invocation example.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| limit | No | Max referrer functions (xrefs) to return (default 100). | |
| maxScan | No | Max GC functions to scan (default 9000). | |
| remotePath | Yes | Luau expression resolving to a RemoteEvent/RemoteFunction/Bindable, e.g. 'game.ReplicatedStorage.Remotes.AttackEvent' or 'getrenv().game.ReplicatedStorage.Net.RF'. Evaluated as `(loadstring('return '..expr))()`; must yield typeof=='Instance' or the tool errors. | |
| threadContext | No | Optional Roblox thread identity for this call; omit it to use the server default. |