Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond the readOnlyHint and idempotentHint annotations, the description adds useful operational context: data source (US Treasury OFAC), public domain status, no auth required, and the update schedule. It also discloses the SHA-256 digest field, which implies integrity verification. This adds value beyond the annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.