Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare destructive=true, idempotent=false, readOnly=false. The description adds non-obvious behavioral context beyond them: the post-approval refusal rule and the routing through accept_schedule_change, plus the paymentId requirement for 'later'. It does not describe reversibility or permissions, but adds real value on top of the annotations.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.