Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations already declare destructiveHint=true and readOnlyHint=false, but the description adds genuinely useful context that annotations cannot: this is a soft delete, the request stays visible with status 'cancelled', and downstream operations (update, decompose, publish) are blocked. That materially refines the meaning of 'destructive' for the caller. It does not disclose permissions or idempotency behavior.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.