Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond annotations (readOnly, openWorld, idempotent, non-destructive), the description discloses return behavior: 'supported, contradicted, or insufficient-evidence with source snippets, or explicit blocked/unreachable/unsupported states.' This gives the agent critical expectations about edge cases and output format, adding meaningful transparency.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.