Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover the safety profile (readOnly, idempotent, closed-world, non-destructive), and the description adds real behavior beyond that: Russian word-form and marketplace-term normalization, AND semantics ('all words must match'), and the fallback path that returns category cases with fallback=true. It does not discuss result size or how fallback results differ beyond the flag.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.