Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the safety profile itself and does it well: it is a pure read, does not broadcast payments, does not invoke providers, and needs no wallet signer or blockchain RPC. That is meaningful behavioral context for a mutation-adjacent domain. It stops short of stating whether access is scoped or whether the cached result can be stale.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.