Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly, non-destructive, non-open-world behavior, so the safety profile is covered. The description adds real context beyond them: results are limited to 'verified active' investors only, and returned URLs must be preserved exactly, which is a behavioral constraint an agent would otherwise violate.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.