Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already provide the safety profile (readOnly, idempotent, non-destructive). The description adds behavioral context beyond them: results are scoped to the client, consist of internal cabinet orders and links, and one purchase may map to multiple orders—useful for callers expecting a one-to-one result.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.