Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden of behavioral disclosure. It mentions 'Queue a scan' implying asynchronous behavior, but does not disclose what is returned, whether the operation is validated, whether it is idempotent, or what side effects occur. For a tool that triggers scans, this is a significant gap.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.