Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the full behavioral disclosure burden. It explicitly states the tool is backend pending (Q3 2026), which is critical availability information, and describes the return catalog contents. It could mention whether the operation is read-only or requires authentication, but 'List' inherently signals a non-destructive operation.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.