Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint=false, openWorldHint=true, idempotentHint=false and destructiveHint=false; the description adds real context beyond them: it is non-destructive by construction (only empty fields are touched), it is admin-only, and it consumes a per-workspace daily quota. It does not explain the retry/idempotency-key behavior that pairs with idempotentHint=false, leaving a small gap.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.