Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish read-only, idempotent, non-destructive behavior. The description adds meaningful behavioral context: active responses include phase, heartbeat, progress, retryAfterSeconds, and a bounded preliminary preview, while terminal responses include score and risk metadata. It also warns that preliminary observations are distinct from completed findings, which goes beyond the annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.