Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations only declare the generic mutation profile (readOnly=false, destructive=false, openWorld=false, idempotent=false). The description adds material behavior the annotations cannot convey: strict data-minimization rules ('Never send conversation text, contacts or URLs'), the accepted input envelope, and a non-booking disclaimer that bounds the side effect.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.