Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true, idempotentHint=true, destructiveHint=false, and openWorldHint=true, so the safety profile is fully covered elsewhere. The description adds only the scoping detail that results are drawn from configured aliases and SSH targets — modest extra context about what 'device' means here, but no disclosure of ordering, environment sources, or failure behavior when nothing is configured.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.