Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description is the main behavioral signal, and it does add useful context: the operation costs $0.05 and produces a sha256-pinned artifact. However, it does not disclose side effects, persistence of the evidence file, charging conditions, or failure behavior, so it only partially carries the burden.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.