Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Goes well beyond the annotations: it discloses that output is untrusted HTML, that it is not legal advice, that drafts may hallucinate/infer, that server-side provider config is required, that it is free with no auth, and that it is rate limited. These are exactly the operational facts an agent needs and cannot get from readOnlyHint/openWorldHint.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.