Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description must fully disclose behavior, but it only says 'List functions at an address.' It does not state whether the tool is read-only or destructive, what the return format looks like, or whether it may throw errors for invalid addresses. The description is too sparse.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.