Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint, idempotentHint and destructiveHint=false, so the safety profile is fully covered by structured data. The description usefully discloses the concrete return fields (type, size, modification time), which is the main value it adds and which matters since there is no output schema. It does not state behavior on missing paths (error vs. false) or permission requirements.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.