Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations only give coarse flags (destructiveHint=true, idempotentHint=true, openWorldHint=true); the description fills in the real behavior: the task content is unchanged, one open request per task, the reviewer is mentioned in the room, the request and its cancellation persist in task history, and the outcome is advisory because 'the host still approves or sends the task back'. This resolves any tension with the destructiveHint flag by clarifying that 'cancel' is the destructive path.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.