Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries full behavioral burden. It discloses returns ('per-step verdict, flagged errors, suggested corrections') and an on-chain certificate side effect. It does not mention authorization/cost but is otherwise transparent for an audit-style tool.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.