Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare the mutation/idempotency/open-world profile, so the bar is lower, and the description still adds real behavioral context: scans consume existing scan limits, depend on provider availability, and can trigger refunds (money/credits can come back on failure). It does not say whether the scan is synchronous or how failures surface.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.