Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover readOnly=true, destructive=false, openWorld=false, but the description adds genuinely useful behavior beyond them: 'stores nothing' (no side effects), 'does not judge truth' (scopes what validation means), and 'Host-held authentication only' (auth requirement). Strong added value for a preview tool.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.