Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover safety (read-only, idempotent, non-destructive). The description adds behavioral context: 'Paid source-first' suggests source prioritization, and 'Returns every matching official document with complete cleaned text, source URL, hash and activity status' discloses the return payload details. This goes beyond the annotations without contradicting them.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.