Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly/idempotent/non-destructive/closed-world, and the description adds genuinely new context: it is computation-only with no upload, charge, account record, or closet inference, and it clarifies unknown colors trigger a clarification request. That supplements the safety profile rather than restating it.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.