Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
The description discloses key behaviors: it returns the latest snapshot, includes stale flags based on freshness SLA, and provides signed receipts. However, with no annotations, it lacks details on error handling, authentication, or how outdated slugs are handled, leaving some behavioral ambiguity.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.