Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare the tool as readOnly, idempotent, and non-destructive, covering the main safety aspects. The description adds the all_fields behavior (names/descriptions vs. IDs) and the specific data source, but doesn't disclose pagination behavior, rate limits, or default result size, which would enhance transparency.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.