AI Readiness Audit
Ref. APM-6543FDC5 · Confidential

Remote Settings PROD

An independent assessment of whether the Remote Settings PROD specification is ready for AI-assisted integration and autonomous agents, prepared for Mozilla Kinto.

Prepared for
Mozilla Kinto
Subject
Remote Settings PROD v1.22
Scope
19 operations · 4 pillars · 3 groups
Date
September 2026
81/100
Mostly ready
Gaps for AI-assisted builds.
Ready for autonomous agents.
Reach AI-ready by Phase 1; resolve all findings → 100 · AI-ready
0
Critical blockers : no findings stop an operation group outright
2235
Total instances: 0 critical, 507 high, 849 medium, 879 low
31
Rule groups across 4 pillars: 0 critical, 507 high sev. instances
Executive summary

Remote Settings PROD scores 81/100: Mostly ready · Grade B. The weakest pillar is Documentation readiness for AI at 55; the strongest is SDK readiness for AI at 91. We recorded 2235 finding instances: 0 critical, 507 high, 849 medium, and 879 low. Gaps for AI-assisted builds. Ready for autonomous agents. Every finding lives in the specification, and the roadmap in this report orders the fixes by impact; resolving them projects the score to 100/100.

Readiness by pillar
Mostly ready 81 / 100
FoundationThe spec itself
90/100
Standards Compliance
OpenAPI validity, structural correctness, specification conformance, and import linting: can machines trust your spec?
90AI-ready
Build Time ReadinessAI writes the code
73/100
Documentation Readiness for AI
Descriptions that say when to use an operation, examples that pin down every shape: whether an AI can learn the truth of your API from what you publish
55Significant gaps
SDK Readiness for AI
Clean types, predictable naming, correct formats: whether production-grade client code can be generated from your spec, by SDK pipelines and AI coding assistants alike
91AI-ready
Runtime ReadinessAgents make the calls
84/100
MCP Readiness
Whether your operations survive being turned into tools: distinct names, descriptions that carry what an agent must know, safe invocation semantics, auth, error recovery, and context budget
84Mostly ready
Score projection · what fixing each phase unlocks
Todaycurrent score
81
Mostly ready
Phase 1fix highs
98
AI-ready
Phase 2+ fix mediums & lows
100
AI-ready
About this report. We evaluated the Remote Settings PROD specification against thousands of deterministic rules we have refined over twelve years of building API tooling, supplemented by AI-based analysis. Every finding is reproducible from the spec itself, scored consistently, and paired with a concrete fix.
What's at stake

Residual risks to monitor

No active failures, but elevated risks remain. Continued improvement will bring these into the managed band.

Foundation The spec itself 90 / 100
Managed · Standards compliance
Your spec holds up where toolchains depend on it
1 critical/high finding group(s) in this area. Score: 90/100.
22→29
code quality score out of 40: the lift consumers achieve when the underlying spec is clean and standards-compliant
APIMatic Context Plugins research · Series B · June 2026
Build Time Readiness AI writes the code 73 / 100
Elevated risk · Documentation readiness for AI
AI readers can't learn the truth of your API
2 critical/high finding group(s) in this area. Score: 55/100.
74%
of developers name missing or unclear documentation as the top reason they abandon an API. AI readers are stricter: what a human would ask about, an AI assumes.
APIMatic Developer Experience research · June 2026
Managed · SDK readiness for AI
Your schemas support trustworthy generated code
No critical or high findings; 2 medium finding group(s) remain. Score: 91/100.
0
fabricated API constructs when a coding assistant was grounded in an AI-ready spec. Ambiguity in the spec is what triggers hallucinated integration code
APIMatic Context Plugins research · 6 APIs · 3 models · June 2026
Runtime Readiness Agents make the calls 84 / 100
Managed · MCP readiness
Your operations are ready to serve as agent tools
1 critical/high finding group(s) in this area. Score: 84/100.
65%
reduction in token consumption when agent tools are grounded in authoritative API context. Bloated or confusable tools consume up to 3.3× more.
APIMatic Context Plugins research · Series A · June 2026
The evidence numbers come from our controlled research: 6 experiments across 3 models, 6 commercial APIs, and 3 languages. We derive each card's risk status from this API's pillar scores. Full methodology at apimatic.io.
Contents

What's inside the full report

Unlock the full report

See all 4 pillar breakdowns, every finding with its fix, and the prioritized remediation roadmap.

Book a FREE audit to view this report