Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Goes well beyond the annotations by disclosing the conditional side effect (low-confidence questions may open a quoted, untrusted ticket), the auth paths required for that path (private Bearer or OAuth agent:send), where the answer lands (agent_inbox), that no response time is guaranteed, and a 'never include secrets' warning. This aligns with and enriches the non-readOnly annotation. Some phrasing around the ticket-creation trigger and 'ACE Team SI™' is opaque enough that the exact behavior isn't fully pinned down.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.