Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already mark this as read-only and idempotent. The description adds meaningful behavioral context by explicitly stating that contact details, role records, identifiers, and clinical data are never returned, which helps an agent set expectations about the limited response scope.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.