Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations present, the description carries the full burden of explaining side effects. It implies a read-like operation (downloading an asset) but does not clarify whether it modifies the asset on the server, overwrites local files, or has other side effects. The behavior is minimally transparent but lacks depth.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.