Accepted MCP contract format
AgentReady expects a static JSON object or array describing MCP tools with names, descriptions and input schemas. It reviews declared tool contracts only; it does not connect to live MCP servers or execute tools.
- Detectable: destructive operations, broad file or email capabilities, missing preview or confirmation, sensitive parameters and ambiguous instructions.
- Not detectable from static JSON alone: runtime tool construction, hidden server behavior, live authorization checks and model-specific decisions.