Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond annotations, it discloses that waiting is polling rather than sleeping, that selector is data and never executed, that arbitrary conditions run with web_eval power, and that such conditions are disabled in read-only mode. This is important security and side-effect information.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.