Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true, idempotentHint=true, and destructiveHint=false, so the safety profile is covered. The description adds valuable behavioral context: it bypasses Cloudflare Turnstile and anti-bot mechanisms, uses AI Multimodal Vision, and is optimized for LLM context windows and RAG pipelines. This goes beyond the annotations and helps the agent understand the tool's capabilities and limitations. It doesn't mention rate limits or potential failures, but the added context is substantial.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.