Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish that the tool is read-only, idempotent, and non-destructive, so that burden is covered. The description adds that the operation yields a contact disclosure and a short-lived signed binding, which gives some behavioral context, but it does not explain how the binding is delivered, what 'short-lived' means, or any authentication implications.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.