Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint=false, destructiveHint=false, and idempotentHint=false, but the description adds genuinely useful context beyond them: the artifact is owner-bound, it is a preview only, and no keys or scores change until execution is approved. That non-mutation-until-approval behavior is the key fact annotations alone would not convey.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.