Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond the annotations (readOnlyHint, openWorldHint), the description adds crucial semantic context: 'ALLOW is policy only, never wallet authority' and that it returns 'a signed portable bridge artifact.' This clarifies that a positive result is not authorization to execute, which is important behavioral information. It does not describe rate limits, error behavior, or what a DENY result entails.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.