Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description must carry the full burden of behavioral disclosure. It states that the tool lists available policy packs, implying a read-only operation, but it does not explicitly note the absence of side effects, authentication requirements, or response details. The description is not misleading, but it leaves some behavioral aspects implicit.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.