Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly, idempotent, non-destructive, so safety is covered. The description adds genuine non-schema context: catalog breadth ('over a hundred exact tools'), the session-listing constraint, the domains covered, and that it is free. Return contents ('best matches with their arguments and cost') are noted even though an output schema exists.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.