# Callable without an MCP client

> 8 keyless GET endpoints. Each one is a read-only tool an MCP server on this host already runs; the HTTP endpoint calls that tool in-process, so there is one implementation and two doors.

| endpoint | what it answers | MCP tool |
|---|---|---|
| [/tools/whoami](/tools/whoami.html?s=client-dossiers) | Who is calling? — the one endpoint that needs nothing from you | `whoami` |
| [/tools/example](/tools/example.html?s=client-dossiers) | A worked example, run for real — no arguments | `example` |
| [/tools/verify-crawler](/tools/verify-crawler.html?s=client-dossiers) | Does this address really belong to the crawler it claims to be? | `verify_batch` |
| [/tools/robots-lint](/tools/robots-lint.html?s=client-dossiers) | Lint a robots.txt | `lint_robots_txt` |
| [/tools/robots-allowed](/tools/robots-allowed.html?s=client-dossiers) | Would this crawler fetch this path? | `check_path_allowed` |
| [/tools/ai-access](/tools/ai-access.html?s=client-dossiers) | Which AI crawlers does this file actually stop? | `audit_ai_access` |
| [/tools/classify-ua](/tools/classify-ua.html?s=client-dossiers) | What is this user-agent? | `classify_user_agent` |
| [/tools/verification-methods](/tools/verification-methods.html?s=client-dossiers) | Can this crawler be verified at all, and how? | `verification_methods` |

## Copy this

```
curl -s 'https://www.pathwren.workers.dev/tools/whoami?&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/example?&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/verify-crawler?ip=66.249.66.1&ua=Googlebot&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/robots-lint?robots_txt=User-agent%3A%20GPTBot%0ADisallow%3A%20%2F%0ANoindex%3A%20%2Fprivate%0A&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/robots-allowed?robots_txt=User-agent%3A%20*%0ADisallow%3A%20%2F%0AAllow%3A%20%2Fblog%2F%0A&ua=GPTBot&path=/blog/post&path=/private&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/ai-access?robots_txt=User-agent%3A%20GPTBot%0ADisallow%3A%20%2F%0A&path=/&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/classify-ua?ua=Mozilla%2F5.0%20AppleWebKit%2F537.36%20(KHTML%2C%20like%20Gecko%3B%20compatible%3B%20GPTBot%2F1.2%3B%20%2Bhttps%3A%2F%2Fopenai.com%2Fgptbot)&s=client-dossiers'
curl -s 'https://www.pathwren.workers.dev/tools/verification-methods?crawler=claudebot&s=client-dossiers'
```

Also here: [1273 client dossiers](/bot/index.html?s=client-dossiers) generated from this host's own request log, and [/data/observed-clients.json](/data/observed-clients.json?s=client-dossiers) with all of them in one request.
