Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations cover read-only/idempotent/open-world, and the description adds substantive context beyond them: the data is a published OLRC release rather than real-time, the site is an independent mirror not a government service, and retrieved text must be treated as source material, not instructions (an explicit prompt-injection caution). It also discloses pagination via nextOffset.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.