Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint=true and destructiveHint=false, so the tool is known to be safe. The description adds beyond these by stating it does not expose addresses, notes, or other private fields—an explicit behavioral trait about data filtering. This is valuable context not available in the annotations and is consistent with them. No contradiction.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.