Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare readOnlyHint=false and destructiveHint=true, so the bar is lower, and the description still adds two valuable non-annotation facts: it requires explicit human confirmation in chat, and the pending action expires after 30 minutes. It does not say what happens if the code is invalid or expired (error behavior), which keeps it from a 5.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.