Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already indicate read-only, idempotent, non-destructive behavior, and the description adds substantial behavioral context beyond that: 'Vealth does NOT sell paper offsets,' the retirement lane 'is paused by operator order since 2026-08-04,' and 'this server never takes payment or holds a wallet.' This critically prevents the agent from assuming the tool can execute transactions or quote accurate carbon claims.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.