Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
There are no annotations, so the description carries the behavior disclosure burden. It communicates a read operation but does not describe what kind of HTML is returned, whether the selector targets the first or all matching elements, or what the 'outer' behavior affects. An agent lacks key behavioral context beyond the tool name.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.