Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover the safety profile (readOnly, idempotent, non-destructive, open-world), but the description adds genuinely new operational context: per-call pricing ($0.02 per successful call, failed calls free) and the specific risk categories it detects. It does not mention rate limits, latency, or auth failure behavior beyond what the api_key schema field already states.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.