Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare a mutating, non-idempotent, destructive write, and the description adds context those flags cannot convey: the sealed-invoice gate and the required add_line suggestion workflow. It does not explain why the operation is flagged destructive or whether duplicate calls create duplicate lines, so it stops short of exhaustive.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.