Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With readOnlyHint=false and destructiveHint=false, the annotations provide no positive safety guarantee, so the description must carry the behavioral burden. It adds useful scoping/filter behavior, but does not clarify whether recall has side effects on memory state; there is no direct contradiction, only ambiguity.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.