Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish readOnly=false and destructiveHint=false, so the description is not responsible for the safety profile. It adds one boundary ('does not publish the agent itself') that is a genuine behavioral clarification. However, it does not discuss reversibility, whether deactivation impacts existing traffic, or any permission requirements, so the added transparency is minimal.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.