Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnly, openWorld, and non-idempotent, but the description adds substantial behavioral detail: clutter removal, blocking of private/internal addresses, size (2 MB) and timeout (10 s) limits, no charge on rejection, and pricing model. This goes well beyond structured annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.