Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly, idempotent, openWorld and non-destructive, so the safety profile is covered. The description adds genuine behavioral value by disclosing what the operation returns (status, fee, programs invoked, balance deltas, last log lines) and implies log truncation. It stops short of covering error cases (invalid/unknown signature) or rate limits.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.