Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries full burden for behavioral disclosure but only states the action without details on permissions, side effects, output format, or error handling. 'Run docker commands' implies execution but doesn't clarify if this runs locally, requires Docker installation, or has security implications.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.