Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description is the sole source of behavioral disclosure. It only states the action 'Stop a running Autonomous Database' without elaborating on side effects (e.g., downtime), permission requirements, reversibility, or whether the operation is asynchronous. This falls short of the full burden expected from a mutation tool.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.