Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly=false, destructive=false, openWorld=true, idempotent=false, so the safety profile is covered. The description adds genuinely new context: the call counts against the daily comments quota and the URN is consumed directly as threadUrn. It does not reconcile idempotentHint=false with the retry-safe idempotency_key parameter, which is the one remaining disclosure gap.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.