Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish readOnly, idempotent, non-destructive behavior, so the bar is lower. The description still adds value by disclosing the content of the read ('native API and downloadable client') and explicitly clarifying that it performs no enrollment or transaction, which sharpens the boundary against an action tool.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.