Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations only indicate non-read-only, non-idempotent, and non-destructive behavior. The description adds the ownership condition, owner-token secrecy, the absolute 24-hour cap, and the fact that no authentication is required, all beyond what annotations provide.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.