Larkspur Studio · Agent-Ready raporu
Larkspur Studio – Interior design & light renovation, Bristol09.10.2026 01:32:11 tarihinde okundu
Adım 1 / 7
Larkspur Studio – Interior design & light renovation, Bristol09.10.2026 01:32:11 tarihinde okundu
Adım 1 / 7
robots_ai_crawlers — pass · 2 of 2 points
robots.txt lets AI search and user-requested retrieval reach your pages.
Request: GET https://wordpress.demo.busymate.ai/robots.txt. Expected: robots.txt does not block search/citation or user-requested AI agents from /. Received: search and citation: no token named, allowed by default; user-requested retrieval: no token named, allowed by default.
discovery_link_headers — pass · 1 of 1 points
HTTP Link headers tell an agent the site MEANT to expose these documents.
Request: GET https://wordpress.demo.busymate.ai/. Expected: Link: </llms.txt>; rel="describedby" and </agents.json>; rel="alternate". Received: describedby → llms.txt; alternate → agents.json
robots_training_policy — optional-missing · optional
The site states, either way, whether its pages may be used for model training.
Request: GET https://wordpress.demo.busymate.ai/robots.txt. Expected: Optional: robots.txt names model-training crawler tokens. Opting out is a valid answer and costs nothing. Received: No model-training crawler token is named, so training crawlers are allowed by default. Stating the decision either way is clearer than leaving it to a default.
llms_full_txt — optional-found · optional
llms-full.txt carries the whole corpus in one file.
Request: GET https://wordpress.demo.busymate.ai/llms-full.txt. Expected: Optional: GET /llms-full.txt returns text. Received: HTTP 200, text/plain; charset=utf-8 — 10307 bytes
sitemap_md — optional-missing · optional
sitemap.md is a human- and agent-readable index.
Request: GET https://wordpress.demo.busymate.ai/sitemap.md. Expected: Optional: GET /sitemap.md returns markdown. Received: HTTP 404, text/html; charset=UTF-8
agents_md — optional-missing · optional
AGENTS.md is a prose companion to the manifest.
Request: GET https://wordpress.demo.busymate.ai/AGENTS.md. Expected: Optional: GET /AGENTS.md returns markdown. Received: HTTP 404, text/html; charset=UTF-8
access_requirements — partial · 1.5 of 3 points
The service documents which capabilities need a token and which do not.
Request: GET https://busymate.ai/mcp. Expected: A manifest, a WWW-Authenticate challenge or protected-resource metadata that states the access requirements. Received: Documented in the capability manifest, but no interface in the capability manifest states its own access requirements
MCP endpoint https://busymate.ai/mcp · transport streamable-http · protocol offered 2025-06-18, returned 2025-06-18, session ran on 2025-06-18 · initialize true · tools/list true · auth open · OAuth metadata true (read at https://busymate.ai/.well-known/oauth-authorization-server/mcp) · access requirements documented the capability manifest · PKCE S256 · dynamic registration true (optional either way) · tools LISTED without a token 15 — listed, not usable · authenticated not measured · authenticated execution tested false · readOnlyHint on 15
oauth_metadata — pass · 3 of 3 points
OAuth metadata discovery resolves, and advertises PKCE where a client must verify it.
Request: GET https://busymate.ai/.well-known/oauth-authorization-server/mcp. Expected: RFC 8414 / RFC 9728 metadata that resolves, with code_challenge_methods_supported. Dynamic client registration is optional. Received: OAuth metadata at https://busymate.ai/.well-known/oauth-authorization-server/mcp resolves and advertises PKCE (code_challenge_methods_supported: S256); dynamic client registration offered (optional, a bonus)
MCP endpoint https://busymate.ai/mcp · transport streamable-http · protocol offered 2025-06-18, returned 2025-06-18, session ran on 2025-06-18 · initialize true · tools/list true · auth open · OAuth metadata true (read at https://busymate.ai/.well-known/oauth-authorization-server/mcp) · access requirements documented the capability manifest · PKCE S256 · dynamic registration true (optional either way) · tools LISTED without a token 15 — listed, not usable · authenticated not measured · authenticated execution tested false · readOnlyHint on 15
authenticated_execution — unverified · 0 of 2 points
An authenticated call actually succeeds — proof that a listed tool is a usable tool.
Request: GET https://busymate.ai/mcp. Expected: An authenticated tools/call that returns a result. This scanner holds no token for your server and never calls a stranger's tool, so this stays UNVERIFIED — reported, never counted as a pass or as your failure. Received: Could not check: this scanner holds no credential for https://busymate.ai/mcp and never calls a stranger's tool. 15 tool(s) are LISTED without a token; whether any of them executes — with or without one — is untested.
MCP endpoint https://busymate.ai/mcp · transport streamable-http · protocol offered 2025-06-18, returned 2025-06-18, session ran on 2025-06-18 · initialize true · tools/list true · auth open · OAuth metadata true (read at https://busymate.ai/.well-known/oauth-authorization-server/mcp) · access requirements documented the capability manifest · PKCE S256 · dynamic registration true (optional either way) · tools LISTED without a token 15 — listed, not usable · authenticated not measured · authenticated execution tested false · readOnlyHint on 15
tool_annotation_coverage — optional-found · optional
Listed tools declare readOnlyHint, so a client can tell a read from a write before it calls.
Request: GET https://busymate.ai/mcp. Expected: Optional: annotations on the listed tool definitions. Only meaningful from protocol revision 2025-03-26, which introduced them. Received: 15 of 15 listed tool(s) declare a readOnlyHint (protocol 2025-06-18). Annotations are optional hints with cautious defaults — reported, never scored.
openapi_spec — optional-found · optional
An OpenAPI document describes the HTTP API.
Request: GET https://wordpress.demo.busymate.ai/openapi.json. Expected: Optional when MCP or another API already describes the interface. Received: HTTP 200, application/json; charset=utf-8
protocol_discovery_aliases — optional-missing · optional
Optional well-known aliases (mcp.json, agent-card.json, api-catalog, …) are served cleanly or not at all.
Expected: Optional: each alias is valid JSON or a clean non-200 — never the site's own HTML shell. Received: 3 of 5 answered cleanly; agent-permissions.json, api-catalog returned the site's own HTML page instead of a document or a clean 404