Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond the readOnlyHint and openWorldHint annotations, the description reveals important behavior: it returns the caller's own plus public scans, sends no data externally, and deliberately returns an empty list for unknown or unauthorized hashes without distinguishing the two. This visibility protection is significant and well documented.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.