Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover read-only, idempotent, non-destructive. The description adds that a row proves event recording, not OCR accuracy or physical completion, explains proposals never charge credits or act autonomously, and notes image URLs are never issued to agents. These are behavioral details beyond annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.