Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare the safety profile (readOnly=false, destructive=false, openWorld=false), so the bar is lower. The description adds genuinely useful non-obvious behavior: it is not idempotent ('Retrying creates another draft'), which warns an agent against blind retries. It does not cover permissions or the returned object, but the retry caveat is a substantive addition.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.