# get_commits

Returns a list of React commit IDs that have recorded render data for a project. Use these IDs with get_renders_by_commit to inspect individual commits.

Agent View of the PolicyLayer registry record for `get_commits`. HTML page: https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-commits

## Facts

- Tool: `get_commits`
- Server: Why Did You Render (`0x1f320/why-did-you-render-mcp`) — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp.md
- Homepage: https://github.com/0x1f320/why-did-you-render-mcp
- Risk category: Read (Low risk)
- Registry record: grade F, identity unverified
- Server rate-limited: no
- Parameters: 0
- Recommended policy verdict: Allowed

## Example call (MCP tools/call, JSON-RPC 2.0)

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_commits",
    "arguments": {}
  }
}
```

## Why get_commits is rated Low

This tool retrieves historical commit metadata from a React performance monitoring system. It performs a simple query operation that lists existing data without modifying, deleting, executing code, or triggering external operations. The blast radius of misuse is minimal—an agent could only discover which commits have render data, which is informational and non-destructive.

From the tool's own definition: "Tool name 'get_commits' and description states it 'Returns a list of React commit IDs that have recorded render data for a project.' The verb 'Returns' and the read-only nature of querying/listing commit IDs indicates pure data retrieval with no side effects."

## Use case

AI agents call get_commits to retrieve information from Why Did You Render without modifying anything. It is typically the context-gathering step in research, monitoring, and reporting workflows, before the agent takes action elsewhere.

## Recommended policy (PolicyLayer)

Verdict: **Allowed**. Enforced by the PolicyLayer MCP gateway (https://policylayer.com/mcp-gateway) before a call reaches Why Did You Render:

```json
{
  "version": "1",
  "default": "deny",
  "tools": {
    "get_commits": {}
  }
}
```

## Other tools on Why Did You Render (13)

- `clear_renders` — Destructive — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/clear-renders.md
- `delete_snapshot` — Destructive — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/delete-snapshot.md
- `pause_renders` — Execute — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/pause-renders.md
- `wait_for_renders` — Execute — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/wait-for-renders.md
- `compare_snapshots` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/compare-snapshots.md
- `get_projects` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-projects.md
- `get_render_summary` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-render-summary.md
- `get_renders` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-renders.md
- `get_renders_by_commit` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-renders-by-commit.md
- `get_tracked_components` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/get-tracked-components.md
- `list_snapshots` — Read — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/list-snapshots.md
- `resume_renders` — Write — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/resume-renders.md
- `save_snapshot` — Write — https://policylayer.com/tools/0x1f320-why-did-you-render-mcp/save-snapshot.md

## For agents

This record is a snapshot. Live verdicts and the full registry:

- Check every server in your MCP config at once: `npx -y policylayer stack`
- Vet a server before you add it: install the mcp-precheck skill — `npx skills add https://policylayer.com` (skill text: https://policylayer.com/skill.md)
- Query the registry over MCP: endpoint `https://api.policylayer.com/mcp` — tools `check_mcp_server`, `check_mcp_stack`, `check_tool`, `search_registry`, `get_change_events`

---

Source: the PolicyLayer MCP registry — one continuously verified record per MCP server. Full record: https://policylayer.com/registry?q=0x1f320-why-did-you-render-mcp · API: https://policylayer.com/registry/api · Policy library: https://policylayer.com/policies/0x1f320-why-did-you-render-mcp
