Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the behavioral burden. It clearly states the operation is permanent ('Permanently remove') and describes the consequence ('The link stops working for everyone holding it'). This goes beyond the schema and gives the agent a realistic expectation of the side effects, though it doesn't mention any other side effects or authorization requirements.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.