Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already carry readOnlyHint=true and openWorldHint=true, so the safety profile is covered. The description adds one genuinely useful behavioral constraint — 'Private/internal hosts are blocked' — which the agent needs to predict failures. It stops there, though: no disclosure of timeouts, redirect handling, JS-heavy page behavior, or content-size limits, which are relevant for an open-world fetch tool.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.