Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
The description adds valuable behavioral details beyond annotations: it is deterministic, uses no LLM, and costs 1 credit. It also states the return type (allow/deny with reason). The annotation idempotentHint and destructiveHint are consistent, and no contradiction exists.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.