Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries full burden. It adds one behavioral trait (each hit includes firstSeenAt and ledgerVerified for integrity). However, it does not mention whether the operation is read-only, costs, rate limits, or any side effects. It provides minimal but non-contradictory transparency.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.