Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
No annotations are provided, so the description carries the full burden of disclosing behavioral traits. It only states what the tool retrieves ('connected financial institutions and credential status') but does not explicitly say whether it is read-only, whether it requires existing connections, or what side effects (if any) exist. The 'get' verb implies read-only, but the description does not confirm this or provide any additional behavioral context.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.