Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly/openWorld/idempotent/non-destructive, so the safety profile is covered. The description adds real behavioral boundaries beyond that: it does not promise an effect on AI Overviews, does not query AI engines, reads public pages only, and reports the date the pages were read. Useful scoping context, though it does not discuss failure modes like unreachable or blocked pages.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.