Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations declare readOnlyHint, openWorldHint, idempotentHint, destructiveHint. The description adds critical behavioral context: 'it does not execute JavaScript or bypass access controls' and explains caching behavior with 'bounded cached result' and 'cheaper for the origin.' No contradiction.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.