Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations supply only destructiveHint=true and a title, so the description carries nearly the full burden. It adds the REST endpoint (POST /api/v1/permissions), which is contextual but not behavioral: it says nothing about key uniqueness/collision behavior, whether creation is idempotent, required scopes, or what happens to the permission on failure. No contradiction with annotations, but little added beyond them.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.