Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
The annotations already indicate read-only, idempotent, and non-destructive behavior. The description adds the behavioral detail that results are scoped to the authenticated tenant, which is not in the annotations. It also hints at the relationship to datafile creation, going beyond the bare annotation metadata.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.