Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?
Annotations are empty, so the description carries the full burden for behavioral disclosure. It communicates the action (rotate) and the immediate effect (refresh with latest revocation info). However, it does not disclose potential side effects, permissions required, whether the operation is reversible, or what the response contains—though for a straightforward rotation action, this may be sufficient.
Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.