Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
With no annotations, the description carries the full burden and does it well. It discloses the side effect ('register its commitment'), the dual verification modes (offline L1 and registry L2), the attestation scope ('integrity and time, not correctness'), and the output constraints ('No floats in output; stores only digests'). This is rich behavioral context beyond the schema.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.