Rovv - Book Rides in Africa
REMOTE · ROVVAFRICA.COM · SCANNED SEP 20
Book rides, get fare estimates, and manage trips across African cities with Rovv.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →
Endpoint Security86
- The endpoint's TLS certificate is valid, in date, and uses a strong key. View diagnostics → Pass
- Authorisation is enforced on tool calls, but the challenge carries no valid RFC 9728 metadata, so a client cannot discover where to get a token. See how to fix → View diagnostics → Fail
- HTTPS is enforced; there's no plaintext access path. View diagnostics → Pass
- HSTS check failed: the Strict-Transport-Security header is absent. See how to fix → View diagnostics → Fail
- DNSSEC is configured correctly; the domain's records validate against the full chain to the root. View diagnostics → Pass
Transport & Reachability100
- Verified streamable-http transport via a live MCP handshake. View diagnostics → Pass
Schema Quality & AI Usability82
- AI-judged instruction clarity (excellent).Pass
- Tool/resource definitions use about 773 tokens (~85/item across 9 items; 9 tools + 0 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
- No destabilizing schema changes in the last 30 days.Pass
Tool Coverage100
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 100% of tool parameters carry a description.Pass
Tool Safety100
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- We read all 9 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
- An AI judge read all 10 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities40
- Spec-recency check failed: implements MCP spec 2025-03-26; the latest is 2026-07-28. See how to fix → Fail
How do I install the Rovv - Book Rides in Africa MCP server?
Rovv - Book Rides in Africa is a hosted endpoint at https://rovvafrica.com/api/v1/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
remote · rovvafrica.com
claude mcp add --transport http com-rovvafrica-ride-booking 'https://rovvafrica.com/api/v1/mcp'
{
"mcpServers": {
"com-rovvafrica-ride-booking": {
"url": "https://rovvafrica.com/api/v1/mcp"
}
}
} {
"servers": {
"com-rovvafrica-ride-booking": {
"type": "http",
"url": "https://rovvafrica.com/api/v1/mcp"
}
}
} [mcp_servers.com-rovvafrica-ride-booking] url = "https://rovvafrica.com/api/v1/mcp"
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"com-rovvafrica-ride-booking": {
"type": "remote",
"url": "https://rovvafrica.com/api/v1/mcp",
"enabled": true
}
}
} openclaw mcp add com-rovvafrica-ride-booking --url 'https://rovvafrica.com/api/v1/mcp' --transport streamable-http
mcp_servers:
com-rovvafrica-ride-booking:
url: "https://rovvafrica.com/api/v1/mcp" {
"McpServers": {
"com-rovvafrica-ride-booking": {
"Transport": "http",
"Url": "https://rovvafrica.com/api/v1/mcp"
}
}
} assistant mcp add com-rovvafrica-ride-booking -t streamable-http -u 'https://rovvafrica.com/api/v1/mcp'
{
"mcpServers": {
"com-rovvafrica-ride-booking": {
"type": "http",
"url": "https://rovvafrica.com/api/v1/mcp"
}
}
} The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.
Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 18 Sept 26 +1
- DNSSEC: unverified → pass ▲ security
- 17 Sept 26 −1
- DNSSEC: pass → unverified ▼ security
- 8 Sept 26 0
- Authorization: unverified → fail ▼ security
- Injection markers: unverified → pass ▲ security
- Stability: unverified → pass ▲ security
- Transport: fail → pass ▲ security
- MCP protocol: unverified → fail ▼ functional
- Endpoint reachability: unreachable → reachable ▲ functional
- Tool coverage: unverified → 100 ▲ functional
- 7 Sept 26 0
- Endpoint reachability: reachable → unreachable ▼ security
- Stability: pass → unverified ▼ security
- Tool safety: pass → unverified ▼ security
- Authorization: fail → unverified ▼ security
- Transport: pass → fail ▼ security
- Capabilities: fail → unverified ▼ functional
- Tool coverage: 100 → unverified ▼ functional
- 3 Sept 26 +1
- Stability: 0.97 → pass security
- 1 Sept 26 −1
- Stability: pass → 0.93 functional
- 31 Aug 26 +2
- DNSSEC: unverified → pass ▲ security
- Stability: 0.97 → pass security
- 30 Aug 26 −1
- DNSSEC: pass → unverified ▼ security
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Probed https://rovvafrica.com/api/v1/mcp
TLS valid
Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .
| Subject | Issuer | Valid from | Valid until | Key | Signature | Serial |
|---|---|---|---|---|---|---|
| CN=rovvafrica.com | CN=YR2,O=Let's Encrypt,C=US | 12 Sept 2026 | 11 Dec 2026 | RSA 2048 | SHA256-RSA | 54777cc0efbdffb7f18924974b26bcc6d00 |
| SANs: rovvafrica.com, www.rovvafrica.com | ||||||
| CN=YR2,O=Let's Encrypt,C=US (CA) | CN=Root YR,O=ISRG,C=US | 3 Sept 2025 | 2 Sept 2028 | RSA 2048 | SHA256-RSA | 4ebd24947e24d394802d84a52fd5b319 |
| CN=Root YR,O=ISRG,C=US (CA) | CN=ISRG Root X1,O=Internet Security Research Group,C=US | 13 May 2026 | 2 Sept 2032 | RSA 4096 | SHA256-RSA | f24b6d17f9d9ad7cb1c9fea78782699f |
Background: What to check on a remote MCP endpoint →
DNSSEC secure
Validation of rovvafrica.com. — Secure
| Zone | DS | Keys | Algorithms | Outcome |
|---|---|---|---|---|
| . | trust_anchor | 20326, 38696 | 8, 8 | Verified |
| com. | present | 19718 | 13 | Verified |
| rovvafrica.com. | present | 53764 | 13 | Verified |
| rovvafrica.com. | Verified address RRset verified with the apex keys |
Authentication Challenged, unverified
The endpoint asked for a token, but we could not retrieve and validate the RFC 9728 metadata that tells a client how to obtain one.
| Result | Challenged, unverified |
|---|---|
| Enforced | On tool calls |
| HTTP status | 200 |
| Header | Value |
|---|---|
| x-content-type-options | nosniff |
| x-frame-options | SAMEORIGIN |
Protected resource metadata
| Retrieved | No |
|---|---|
| Problem | no_resource_metadata |
Background: How OAuth 2.1 works in the 2026 MCP spec →
Transports 2 probes
| Transport | URL | Outcome | Status | Location |
|---|---|---|---|---|
| streamable-http | https://rovvafrica.com/api/v1/mcp | Verified | 200 | |
| http (plaintext) | http://rovvafrica.com/api/v1/mcp | HTTPS enforced | 301 | https://rovvafrica.com/api/v1/mcp |
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
book_ride ~192
Book a Rovv ride. Requires pickup/dropoff coordinates, a vehicle_type ID (from get_fare_estimate), and payment method. Returns booking confirmation with ride number.
| Name | Type | Req | Description |
|---|---|---|---|
| drop_address | string | yes | Dropoff address text |
| drop_lat | number | yes | Dropoff latitude |
| drop_lng | number | yes | Dropoff longitude |
| is_later | boolean | – | Set to true for scheduled rides |
| payment_opt | integer | – | Payment method: 0 = card, 1 = cash, 2 = wallet |
| pick_address | string | yes | Pickup address text |
| pick_lat | number | yes | Pickup latitude |
| pick_lng | number | yes | Pickup longitude |
| trip_start_time | string | – | For scheduled rides: datetime in Y-m-d H:i:s format |
| vehicle_type | string | yes | The zone_type_id from get_fare_estimate results |
No output schema declared.
No examples provided.
cancel_ride ~55
Cancel an active ride. Optionally provide a reason.
| Name | Type | Req | Description |
|---|---|---|---|
| reason | string | – | Optional cancellation reason |
| request_id | string | – | The ride request ID to cancel. If not provided, cancels the current active ride. |
No output schema declared.
No examples provided.
get_current_ride ~30
Get the status of the user's current active ride, including driver details, ETA, and ride status.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
get_fare_estimate ~109
Get available vehicle types and fare estimates for a trip. Returns a list of vehicle options with prices, ETAs, and vehicle type IDs needed for booking.
| Name | Type | Req | Description |
|---|---|---|---|
| drop_address | string | – | Dropoff address text |
| drop_lat | number | yes | Dropoff latitude |
| drop_lng | number | yes | Dropoff longitude |
| pick_address | string | – | Pickup address text |
| pick_lat | number | yes | Pickup latitude |
| pick_lng | number | yes | Pickup longitude |
No output schema declared.
No examples provided.
get_place_details ~63
Get the exact coordinates and full address for a place using its place_id (returned from search_places). Call this after search_places to get lat/lng needed for fare estimates and booking.
| Name | Type | Req | Description |
|---|---|---|---|
| place_id | string | yes | The Google place_id from a search_places result |
No output schema declared.
No examples provided.
get_ride_history ~44
Get the user's past ride history. Returns recent completed and cancelled rides.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | Number of rides to return (default 5, max 20) |
No output schema declared.
No examples provided.
get_route_info ~69
Get driving route information between two points including distance, duration, and polyline.
| Name | Type | Req | Description |
|---|---|---|---|
| drop_lat | number | yes | Dropoff latitude |
| drop_lng | number | yes | Dropoff longitude |
| pickup_lat | number | yes | Pickup latitude |
| pickup_lng | number | yes | Pickup longitude |
No output schema declared.
No examples provided.
get_wallet_balance ~27
Get the user's Rovv wallet balance, total added, total spent, and recent transactions.
Input schema present but exposes no named parameters.
No output schema declared.
No examples provided.
search_places ~105
Search for a location by name. Returns a list of matching places with addresses. Use this to find the pickup or dropoff location before booking a ride.
| Name | Type | Req | Description |
|---|---|---|---|
| lat | number | – | Optional latitude to bias results toward the user's area |
| lng | number | – | Optional longitude to bias results toward the user's area |
| query | string | yes | The place name or address to search for, e.g. "Lekki Phase 1" or "Murtala Muhammed Airport" |
No output schema declared.
No examples provided.
What is the Rovv - Book Rides in Africa MCP server?
Rovv - Book Rides in Africa is an MCP server listed in the public MCP registry as com.rovvafrica/ride-booking. Book rides, get fare estimates, and manage trips across African cities with Rovv. This page covers its hosted endpoint (https://rovvafrica.com/api/v1/mcp).
Is the Rovv - Book Rides in Africa MCP server safe to use?
Rovv - Book Rides in Africa scores 89 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Rovv - Book Rides in Africa MCP server expose?
Rovv - Book Rides in Africa exposes 9 tools: search_places, get_place_details, get_fare_estimate, book_ride, cancel_ride, and 4 more. Their descriptions and schemas cost roughly 694 tokens of context every time the server is loaded.
Does the Rovv - Book Rides in Africa MCP server require authentication?
Yes. Rovv - Book Rides in Africa asked us for credentials when we connected, so you will need to authorise it in your MCP client before it can do anything.
Is the Rovv - Book Rides in Africa MCP server still maintained?
Rovv - Book Rides in Africa is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.