Claude Agent for MCP - a Python-based FastAPI server for managing tool discovery, execution, and analysis with support for decompilation, encryption analysis, and binary inspection.
This server exhibits catastrophic definition quality issues across all 37 tools. The source code provided consists of TypeScript type definitions and configuration objects, NOT actual MCP tool implementations. No Python FastAPI route handlers, Pydantic models, or MCP protocol implementations are visible. The tools appear to be aspirational declarations rather than functional MCP tools. All tools lack proper JSON Schema input definitions, comprehensive descriptions are absent or generic, and there is no evidence of actual MCP protocol integration. The server claims 37 tools but shows only static TypeScript type definitions with minimal validation. Parameter descriptions are typically single-phrase identifiers without actionable guidance. Error handling, recovery paths, and output schemas are completely absent. This is a facade project, the tool definitions exist in configuration files but the actual MCP server implementation (the Python FastAPI handlers that would execute these tools) is not provided or does not exist.
ABC tag structure analyzer
Advanced ABC bytecode extraction with validation and reconstruction capabilities for DoABC and SymbolClass
Static and dynamic analysis of AS3 code including patterns, dataflow, controlflow, tracing, and profiling
Debugger for AS3 with breakpoints, stepping, runtime inspection, memory analysis, and execution monitoring
Advanced AS3 decompiler with code restoration
Advanced AS3 decompilation and analysis tool
Advanced AS3 Decompiler with method, class, and namespace decompilation with optimization and type inference
No actual MCP server implementation visible. Source code shows only TypeScript type definitions and configuration objects, not Python FastAPI route handlers. The 37 tools are declared in config but not implemented as functional MCP tools with proper request/response handling.
Input schemas are incomplete or missing JSON Schema type definitions. Tools specify parameter names and descriptions but lack proper 'type' field enforcement. Example: 'input' and 'output' parameters in ABC Extractor Pro lack explicit 'type: string' validation in visible schemas.
Inferred effective spec: <=2025-11-25.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-22 | F | 28 | <=2025-11-25 | v2 |
| 2026-03-09 | F | 24 | - | v1 |
Extract assets from SWF files
Optimizes images, sounds, and compression with validation
Rebuilds assets including images, sounds, and fonts with optimization and verification
Automation engine supporting scripts, workflows, triggers, plugin integration, and API hooks
Processes files in parallel with queuing, scheduling, progress tracking, and statistics reporting
Optimizes code through inlining, dead code removal, constant optimization with performance and size analysis
Advanced encryption analysis and key detection
Analyzes encryption algorithms including XOR, RC4, AES, and custom implementations with key detection and pattern matching
Interactive SWF file browser and analyzer
Recover JPEG assets (1160000-2570000)
Process and analyze game maps
Debugger for tracking memory allocations, leaks, and patterns with visualization capabilities
Scan memory for patterns
Analyzes performance, coverage, and quality metrics with graph and chart visualization
Enhanced pattern matching and analysis engine
Find encryption patterns in SWF
Monitor process activity
Scanner for detecting encryption, obfuscation, and anti-debug protection mechanisms with static, dynamic, and heuristic analysis
Advanced ABC bytecode disassembler and analyzer
ABC bytecode disassembler
Generates reports with templates, customization, and scheduling in HTML, PDF, and JSON formats
Deep SWF file analysis and protection detection
Deep analysis of SWF files for structure, protection mechanisms, and dependencies with reporting capabilities
Reconstructs SWF files with tag and structure rebuilding, asset integration, and integrity/compatibility validation
Extract sound and voice assets
Decrypt special SWF tags
Extract UI components and layouts
Network protocol analyzer
Handle ZLIB compression in SWF
Advanced x64/x32 debugger
Tool descriptions are generic and lack actionable context. Example: 'Advanced AS3 Decompiler with method, class, and namespace decompilation with optimization and type inference' does not explain WHEN to use this vs other decompilers, WHAT prerequisites exist, or WHAT the output format is.
No output schemas documented. Tools lack descriptions of return types, structure, and fields. LLMs cannot plan downstream tool chains without knowing what each tool returns. Example: SWF Deep Analyzer describes 'reporting capabilities' but does not specify the structure of the generated report (JSON fields, required keys, etc.).
No error handling or recovery guidance. Tools do not specify error conditions, retryable vs fatal failures, or actionable recovery steps. An LLM calling a tool that fails gets no guidance on whether to retry, ask the user, or try an alternative tool.
No parameter validation rules documented. Numeric parameters (page_size, timeout, process ID) lack min/max bounds. String parameters lack format specifications, regex patterns, or length constraints. LLMs have no guidance on valid input ranges.
Generic, non-verb-based tool names reduce clarity. Example: 'Pattern Engine', 'Map Tools', 'Flash Browser' do not start with action verbs. They should be 'analyze_patterns', 'process_maps', 'browse_flash_files' to clearly signal intent.
Ambiguous parameter names. Many tools use bare 'input' and 'output' as parameter names without type suffixes. Should be 'input_file_path', 'output_file_path', 'input_swf_path', etc. to disambiguate for LLMs.
Tools with empty or near-empty input schemas. Example: 'Flash Browser' has input: {} (no parameters at all), yet presumably requires configuration or a target. Schema definition is incomplete.
No security guidance on destructive operations. Tools like 'SWF Rebuilder Pro', 'Asset Optimizer', 'Code Optimizer Pro' modify files (marked WRITE risk) but lack descriptions of rollback procedures, dry-run options, or confirmation requirements. High risk of unintended data loss.
No pagination or result limits specified. Tools like 'Batch Processor Pro' accept arrays of file paths but do not specify maximum batch size, rate limits, or pagination strategy. Risk of context overflow or service saturation.
Tool dependencies and prerequisites not documented. Example: 'AS3 Debugger Pro' depends on a running Flash runtime or debugger server, but this is not stated. 'Pattern Engine' requires pattern definitions but does not explain where they come from or how to format them.
Conflicting/redundant tools suggest unclear taxonomy. Multiple decompilers exist (Advanced AS3 Decompiler, AS3 Sourcerer, AS3 Sorcerer) with near-identical names and descriptions. LLMs will struggle to distinguish when to use which. Tools should be consolidated or have clear specialization differences documented.