Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the full burden, yet it only names the output sections. It never states that this is a read-only operation, whether it works on completed vs in-progress runs, how large the report may be, or what happens if run_id is omitted. Useful output detail, but the safety/behavior profile is undisclosed.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.