Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=true, idempotentHint=true, and destructiveHint=false, covering the safety profile. The description adds 'owned' and 'plain-text' which are properties of the target note, not behavioral traits. It does not disclose return format, error behavior, or ownership verification, but the annotations mitigate the need for such detail. No contradiction with annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.