Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations mark this as non-read-only and non-idempotent, and the description aligns by revealing that payment confirmation is atomic, targets exactly one matching Base payment, and transitions the order into review. It also discloses the privacy requirement for ticket and signed offer, adding useful context beyond the minimal annotation set.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.