Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Goes well beyond the annotations by disclosing key side effects: the link is short-lived and one-time, no card is added, and 'makes the previous view link invalid.' It also flags token secrecy handling ('never show or put it in a URL'). This is genuine behavioral context not derivable from readOnlyHint=false / idempotentHint=false.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.