Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the full burden, and it does disclose one meaningful trait: the tool never contacts, books, hires, purchases from, or pays any provider, signaling a purely advisory/no-side-effect operation. It says nothing about permissions, rate limits, or whether the output is a recommendation vs. a plan, so coverage remains partial.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.