Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare it is a non-read-only, non-idempotent, non-destructive, closed-world write. The description adds genuinely new behavioral facts: the URL is single-use, expires after 24 hours, and is bounded by workspace lifetime. It does not explain what happens on retry or what the returned payload contains.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.