Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
The annotations already declare the operation safe: readOnlyHint=true, idempotentHint=true, destructiveHint=false. The description adds the domain context 'Cloudflared tunnels plus Coraza WAF instances' but reveals nothing about output shape, pagination, or whether WAF instances are nested or separate. This is acceptable but not rich.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.