Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover the safety profile (readOnly, idempotent, non-destructive, openWorld). The description adds genuine value beyond them: the exact data scope ('only payment instructions and receipt status, never card details or donor personal information'), a security caveat about redirects/claims, and a privacy warning that invoice URLs disclose the wallet address. This is substantive behavioral context beyond the structured fields.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.