Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare the safety profile (non-read-only, non-destructive, non-idempotent, closed-world), so the bar is lower. The description still adds real behavior: the 24-hour download link with expiry, the returned event count, and the explicit no-side-effect boundary. It does not explain why repeated calls yield different links (the non-idempotent trait), which is the one remaining gap.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.