Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover the safety profile (readOnly, idempotent, closed-world, non-destructive), and the description adds substantive behavior beyond them: the exact return surface (state, expiry time, link), the full state enum, and explicit negative guarantees (never returns the script, title, or contents). This is the kind of disclosure that prevents an agent from misusing the result.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.