Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly/idempotent/openWorld/destructive, so safety is covered; the description adds the non-obvious cost trait ('Uses your Google quota') and enumerates the diagnostic fields returned. That is genuine context beyond the structured fields, though no rate-limit magnitude or failure behavior is given.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.