Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint=false, openWorldHint=true, idempotentHint=false, destructiveHint=false – so the safety profile and non-idempotency are already covered structurally. The description adds 'with the customer's key' and 'real' (vs test), implying live external side effects, which is useful context beyond the annotations, but does not say what 'sealed' means, whether a record is persisted, or what the experiment ('test_') actually affects.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.