A tool called dowbench scans LLM agent tool definitions offline to identify cost-amplification vulnerabilities—patterns like unbounded results and pagination loops that can inflate API bills. The scan matches tool schemas against measured attack patterns from real model benchmarks and recommends fixes, requiring no API key or provider calls.