Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare read-only and open-world behavior; the description adds non-obvious context the annotations do not: the OSV.dev data source, the 1,000-version cap, what is returned (affected packages, severity, upgrade versions), and critically the $0.05 USDC x402/prepaid pricing and exclusion from the free trial. That payment/auth constraint is exactly the kind of disclosure the annotations cannot convey.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.