Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true, idempotentHint=true and openWorldHint=false, so safety and repeatability are covered. The description adds useful scope disclosure ('cached' metadata, no observation rows), but says nothing about staleness of the cache, error behavior for a bad dataset_id, or lifecycle relative to release_dataset.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.