Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Without annotations, the description carries the burden of behavioral disclosure. It conveys a read-only listing action, but it does not mention the dry_run parameter or any side effects, return format, or access requirements. The verb 'list' gives a basic safety signal, but more context would be beneficial.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.