Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Since no annotations are present, the description carries the behavioral burden. It discloses key traits: the workspace is ephemeral, stored in memory, not cloud-backed, and gets a cloud id only after artifacts_creat_shared. It could add side-effect details about an existing local workspace, but the main behavioral profile is transparent.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.