ClawAudit verdict
navifare-flight-validator
gonza-navifare-deals
The skill uses the Navifare MCP server to verify and compare flight prices across multiple booking sites, and it requires access to specific MCP tools. The skill's behavior matches its stated purpose, and it does not appear to have any malicious or deceptive behavior.
โ Flagged for review โ coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis โ not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (1)
Popular HTTP library โ network access
references/AIRPORTS.md ยท prose ยท downgraded ยท GOT
Permissions & capabilities
No declared permissions โ minimal attack surface.
network_in Is this flag fair?
Thanks โ recorded.