Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint, idempotentHint, destructiveHint=false and openWorldHint=false, so the safety profile is covered. The description adds that data limitations are surfaced, which is genuine behavioral context, but says nothing about rate limits, auth, error behavior on unknown ids, or whether missing data is returned as null vs omitted.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.