Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden of behavioral disclosure. It clarifies that the tool lists attachments and that file download is not available, which prevents a common misunderstanding. However, it does not mention authentication, pagination, or response structure, leaving some behavioral details undisclosed. The added caveat about Phase 1 strengthens transparency beyond the tool name.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.