Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Beyond the annotations (readOnlyHint=true, destructiveHint=false), the description discloses the 10-minute signed-link expiry, freshness uncertainty, possible coexistence with newer failing compiles, and the requirement to actually open the PDF with a PDF-capable tool. This significantly enriches the agent's mental model without contradicting any annotation.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.