Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint, idempotentHint, and openWorldHint false; the description adds meaningfully beyond that: it never returns ciphertext, updated_at is the version to pass as if_match on conditional stores, and the call costs $0.001 USDC on Base via x402. There is no contradiction with the annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.