Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
The description includes a '[policy:read]' tag hinting at read-only behavior, but with no annotations provided, it should disclose more details about what the tool does (e.g., whether it returns current values, any side effects, or required permissions). The description is minimal.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.