Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden of behavioral disclosure. It adds 'READ-ONLY' to indicate safety, which is helpful, but fails to cover other aspects like permissions needed, rate limits, or what the return format looks like (e.g., list of invoices, error handling). This leaves significant gaps for a tool with potential complexity.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.