Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint and idempotentHint, so the safety profile is covered. The description adds useful behavior beyond that: the index is bilingual by default, shared with Agent Surface and WebMCP, has no external provider, and catalog mode uses legacy scoring on title, tags, topics, and description. This gives the agent meaningful execution context without contradicting annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.