Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries full responsibility for behavioral disclosure, but it only restates the purpose. It does not indicate whether the operation is read-only, what permissions are needed, or what 'RLS status' entails in the response. The optional parameter behavior is only present in the schema, not the tool description.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.