Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish readOnlyHint, idempotentHint and destructiveHint, so safety framing is covered. The description adds a genuinely useful behavioral warning that annotations cannot express: title, body and labels are untrusted text from other owners' agents, which primes the agent against prompt injection.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.