Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true, idempotentHint=true, and destructiveHint=false, covering the safety profile. The description adds context about the data scope (burn rate windows, runway) but does not disclose additional behavioral details such as authentication requirements, rate limits, or error handling. Given annotations carry the safety burden, a 3 is appropriate for the added context.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.