MCP server for searching and querying vehicle database with advanced filtering, statistics, and multi-criteria search capabilities for a Turkish car gallery/dealership
This MCP server exhibits significant quality gaps across all definition dimensions. Tool names lack clear action verbs, descriptions are either missing or minimal, and input schemas are either completely absent or severely underspecified. The server operates as a Turkish-language car search interface with 4 tools, but 3 of them (sql_sorgusu_calistir, tablolari_listele, tablo_yapisi_goster) expose raw database operations without adequate safety guardrails. The primary tool (araba_ara) has an extremely verbose description (400+ chars) that violates brevity guidelines, and most parameters lack type information in the source schema. Error handling is not evident. Security is a critical concern: the sql_sorgusu_calistir tool accepts arbitrary SQL strings, creating injection risks.
Gelişmiş araba arama tool'u - Advanced car search with multiple filtering options: brand, model, price range, year, mileage, location, fuel type, transmission, condition, vehicle type, color, special search terms, and sorting/statistics capabilities
SQL sorgusunu çalıştır ve sonucu döndür.
Tablonun yapısını göster.
Veritabanındaki tabloları listele.
sql_sorgusu_calistir accepts arbitrary SQL strings with no input validation, schema definition, or injection protection. This is a critical security vulnerability.
Three tools (sql_sorgusu_calistir, tablolari_listele, tablo_yapisi_goster) have NO visible input schema definitions in the source code.
araba_ara parameter descriptions reference enums (e.g., 'gaz, benzin, dizel, hibrit, elektrik' for yakit) as text rather than formal JSON Schema enum constraints. LLMs cannot read text examples reliably and will hallucinate invalid values.
araba_ara description is 400+ characters, exceeding the 200-char baseline for optimal LLM token efficiency. Descriptions this long waste context window and bury actionable details.
Inferred effective spec: <=2025-11-25.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-22 | F | 32 | <=2025-11-25 | v2 |
| 2026-03-09 | F | 21 | 2025-04-04+ | v1 |
Tool names do not uniformly start with action verbs. 'tablolari_listele' and 'tablo_yapisi_goster' are verb-noun pairs, but 'araba_ara' uses noun-verb order in Turkish. The schema lacks names for first three tools entirely.
No error handling or recovery guidance visible. Tools like sql_sorgusu_calistir that fail (e.g., syntax error, permission denied) provide no actionable error message to guide the LLM's next step.
araba_ara marka parameter accepts 'string or list' but JSON Schema cannot express this union without oneOf/anyOf, which are not visible in the source. Ambiguous type definition invites LLM confusion.
No output schemas documented for any tool. LLMs cannot plan subsequent calls or extract the right fields without knowing what the response structure looks like.