Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations provided, the description carries the full disclosure burden, but the single sentence only states what the tool returns. It does not disclose side effects, read-only behavior, server access, rate-limit implications, or response format, leaving an agent to infer that a stats call is safe. The implied read-only nature adds a little context, but not enough to exceed a 2.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.