Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already establish readOnly/idempotent/non-destructive, and the description adds the substantive behavioral layer: the exact rejection triggers (invented guarantee, invented discount, banned phrase, unapproved offer), the 'inactive offer is rejected' rule, and the explicit side-effect disclaimer 'Does not save the draft'. It does not cover permissions or failure modes beyond rejection, so not a full 5.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.