Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true and destructiveHint=false, so the safety profile is clear. The description adds the constraint 'inside configured remote roots,' which is useful, but it does not mention return format, pagination, or limit behavior. Beyond the annotations and the remote-roots constraint, transparency is limited.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.