Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already cover readOnly=false, idempotent=false, and destructive=false. The description adds useful behavior: it creates drafts (not final reports), returns IDs for review, and groups all orders under a single project. This goes beyond the annotations without contradicting them.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.