Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover read-only, non-destructive, idempotent behavior. The description adds useful process context—resolving MX hosts to IPs before checking—and names the blocklists checked. The stated count of six vs. the five listed is a minor accuracy blemish, but not a contradiction with annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.