Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations provide idempotency and non-read-only hints. The description adds behavioral context about signed audit and C2PA-provenanced output surface, which goes beyond annotations. It doesn't mention potential side effects or permission requirements, but given the annotation coverage, this is a solid 4. No contradiction exists.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.