Skip to main content
Glama

Service Ip Filter

service_ip_filter

Filter IP addresses for a service unit using unit-file definitions and eBPF/bpftool as the authoritative source.

Instructions

Эффективный IP-фильтр юнита: unit-файлы + eBPF/bpftool (ground truth)

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
paramsNo

Output Schema

TableJSON Schema
NameRequiredDescriptionDefault

No arguments

Schema Changelog

Changes observed during successful MCP inspections.

  1. First observedv1.0.0

TDQS

C2.6/5.0
Behavior2/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

No annotations are provided, so the description must carry the full burden. It mentions 'ground truth' and implementation details (unit-files + eBPF/bpftool) but does not disclose key behavioral traits: what exactly it does (read-only? filter? list?), how it interacts with system state, or whether it requires elevated privileges. The agent cannot predict side effects or requirements.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness2/5

Is the description appropriately sized, front-loaded, and free of redundancy?

The description is extremely short (one fragment) but under-specified. It does not front-load any actionable information; it is more of a label than an explanation. It could be both concise and informative, but it is not.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness2/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

Given the tool's complexity (IP filtering with eBPF) and almost no schema/annotation coverage, the description is woefully incomplete. An agent has no idea what to pass in 'params' or what to expect in return. Extra sibling tools add confusion, but the description doesn't disambiguate.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters4/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

With 0% schema coverage and only a generic 'params' object that accepts anything, the description is the only source of parameter meaning. However, it provides no parameter semantics at all—no mention of expected keys (e.g., unit name, IP range). Despite the schema being opaque, the description fails to clarify what 'params' should contain, so I give 4 because the description is the only possible source and it is missing.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose3/5

Does the description clearly state what the tool does and how it differs from similar tools?

The description states the tool is an 'effective IP filter' for a unit, mentioning unit-files and eBPF/bpftool as ground truth. However, it is vague about the specific action (e.g., filter, list, check) and the resource (which unit? which IP addresses?). It does not clearly distinguish it from other network tools like linux_firewall or tcpdump_probe.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines2/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

No guidance on when to use this tool versus alternatives. It does not mention any exclusions or specific scenarios (e.g., when to prefer linux_firewall). The agent is left to guess based on the name alone.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.