Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries full disclosure. It states 'Read-only', explains how 'method' is determined based on 'bit_ops', describes the effect of passing 'offset_ref', and notes that the returned 'attestation_hash' binds to the ledger's hash chain. This is rich, non-obvious behavioral context.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.