MCP server for OpenAPI-Spec-Master - provides tools for loading, analyzing, and exploring OpenAPI specifications
Server has 15 well-named tools with complete input schemas and descriptions. Naming follows verb_noun convention (load_, get_, search_, generate_, validate_, export_, find_). All tools are READ_ONLY, reducing security risk. However, output schemas are not documented, LLMs cannot predict response structure for planning. Parameter descriptions are present but generic; many lack format constraints, ranges, or examples of valid values. Error handling is declared but implementation details are not visible. No tool annotations (readOnlyHint, idempotentHint) despite all being read-only. Missing pagination guidance for tools returning lists (search_endpoints, get_api_analytics, find_unused_schemas).
Export API documentation in various formats
Analyze and extract authentication and authorization patterns across the API
Trace and analyze schema references and dependencies throughout the API
Identify schemas that are defined but never referenced in the API
Generate code examples for specific endpoints in various languages
Generate realistic mock data based on OpenAPI schemas
Generate TypeScript interfaces and types from OpenAPI schemas
Output schemas not documented. LLMs cannot predict response structure, field names, or types for downstream planning. Tools like get_api_overview, get_api_analytics, and export_documentation return complex objects but no schema is visible.
No pagination parameters or guidance for list-returning tools. search_endpoints, get_api_analytics, find_unused_schemas could return large result sets without limit/offset/cursor support documented.
Parameter descriptions lack format constraints and ranges. E.g., 'depth' in find_schema_dependencies has no min/max; 'count' in generate_mock_data has no bounds; 'query' in search_endpoints has no length limit. LLMs will pass arbitrary values.
Inferred effective spec: <=2025-11-25.
| Scored | Grade | Overall | Spec posture | Rubric |
|---|---|---|---|---|
| 2026-09-23 | C | 69 | <=2025-11-25 | v2 |
Get comprehensive analytics and insights about the API
Get a comprehensive overview of the loaded API including basic info, statistics, and analytics
Get detailed information about a specific endpoint
Load and parse an OpenAPI specification from text, URL, or file content
Search and filter API endpoints with advanced criteria
Deep search through request body schemas to find specific properties, types, or patterns
Analyze the API design and provide recommendations for improvements
Validate that request/response examples match their schemas
No tool annotations despite all tools being read-only. Adding readOnlyHint=true to all 15 tools would signal to clients that these are safe to call without confirmation, improving agent efficiency.
Error handling declared but not visible in source. No evidence of recovery guidance, error categorization, or actionable error messages. Tools should return 'Schema not found. Available schemas: User, Product, Order' instead of bare 404s.