Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond the annotations, the description discloses synchronous execution, 'Task support: forbidden', and that the returned JSON is 'internal application state' for orchestration. It also prescribes response formatting rules, adding useful context that is consistent with the readOnlyHint and idempotentHint annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.