Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish read-only, idempotent, and non-destructive behavior. The description adds valuable context that these are 'active' domains registered by attackers and intended for phishing, which goes beyond the structured fields. It does not fully describe rate limits or cache behavior, but given the annotation coverage, the additional context justifies a score above baseline.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.