Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly, idempotent, openWorld and non-destructive, so the safety profile is covered. The description adds payload semantics (MCP endpoint URL, mcpVerified from the probe, mcpAuthRequired on 401/403), which is genuinely useful context, but it says nothing about pagination or how 'live' is determined.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.