Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full burden for behavioral disclosure. It only reveals that the tool 'uses cat', which hints at output behavior but does not state whether SSH credentials are required, what happens on missing files, error behavior, or that the operation is read-only.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.