CreditClaw
Pay with Virtual Cards. Spending power for AI Agents, controlled by your human. Use Visa Intelligent Commerce or MasterCard AgentPay to mint virtual cards for payment.
Rank
62
Safety
84
Downloads
4.9k
Updated
Oct 9, 2026
Version
2.9.13
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 4.9K downloads reported by the source. Last updated 10/9/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 9, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 9, 2026
- Adoption signal
- 4.9K downloadsadoption · observed Oct 9, 2026
- Latest release
- 2.9.13release · observed Jul 21, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install s1786035rxajpadskvj7yq2m7x83n8er:creditclaw- Install using `clawhub skill install s1786035rxajpadskvj7yq2m7x83n8er:creditclaw` in an isolated environment before connecting it to live workloads.
- No published capability contract is available yet, so validate auth and request/response behavior manually.
- Review the upstream CLAWHUB listing at https://clawhub.ai/creditclaw/creditclaw before using production credentials.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-creditclaw-creditclaw/snapshot"
Documentation
CLAWHUB
155,993 characters of source documentation, loaded on request.
Extracted files
4 files captured from the source.
SKILL.md
---
name: creditclaw
description: "Pay with Virtual Cards. Spending power for AI Agents, controlled by your human."
version: 3.0.0
metadata:
version: "3.0.0"
openclaw:
requires:
env:
- CREDITCLAW_API_KEY
invocation: user_confirmed
---
# CreditClaw — Virtual Cards for AI Agents
CreditClaw.com gives you spending power your owner controls. Your owner creates a **Virtual Card** from their own Visa/Mastercard, sets its spending limit, and links it to you. When you need to pay, you mint fresh card numbers off that card and fill the merchant's payment form.
Base URL: `https://creditclaw.com/api/v1`
> `rail3` in the endpoint paths below is a literal, fixed segment (the Virtual Cards rail) — never substitute your bot ID into it.
## Security
- All requests: `Authorization: Bearer <CREDITCLAW_API_KEY>` (except registration, which returns your key).
- **Never send your API key to any domain other than `creditclaw.com`, and never share it** — it's your identity and can spend your owner's money.
- **Mint fresh card numbers immediately before each purchase.** Never reuse or cache numbers across purchases — discard them after submitting the payment form.
- Spending limits are baked into each Virtual Card and enforced at the card network. Your owner can freeze or revoke a card at any time.
## 1. Register (once)
Already have a `CREDITCLAW_API_KEY` from a previous session? You're registered — skip to step 3. Never re-register; that creates a new bot that must be re-linked.
```bash
curl -X POST https://creditclaw.com/api/v1/bots/register \
-H "Content-Type: application/json" \
-d '{
"bot_name": "my-research-bot",
"owner_email": "[email protected]",
"pairing_code": "483-921"
}'
```
- `bot_name` and `owner_email` required. `pairing_code` (from your human's onboarding screen) links you to their account automatically — include it whenever you have one.
- No pairing code? Register without it and give your human the `owner_verification_url` from the response so they can claim you.
- **Save the `api_key` from the response immediately** — it cannot be retrieved again. Store it where your platform stores credentials (default: env var `CREDITCLAW_API_KEY`; OpenClaw: `~/.openclaw/.env`). Load it next session.
- Rate limit: 3 registrations per hour per IP.
## 2. Your Owner Creates a Virtual Card
Only your owner can create Virtual Cards, at `https://creditclaw.com/virtual-cards`. Each card has its own spending limit, expiry date, and bot link. The card must be **linked to you** and `active` before you can use it. If you have no usable card, ask your human — don't poll.
## 3. See Your Cards
```bash
curl https://creditclaw.com/api/v1/bot/rail3/cards \
-H "Authorization: Bearer $CREDITCLAW_API_KEY"
```
Returns your linked cards with `card_id`, `card_name`, `status`, `is_frozen`, and spending limits (`limit_amount_cents` per `limit_period`; `intent_mode: "open"` means no cap). Pick the `card_id` you'll pay with — it musREADME.md
# CreditClaw — Virtual Cards for AI Agents Give your AI agent spending power you control. CreditClaw issues **Virtual Cards** from your own Visa/Mastercard — each with its own spending limit, expiry date, and agent link. Your agent mints fresh one-time card numbers right before each purchase and fills the merchant's payment form; limits are enforced at the card network, and you can freeze or revoke a card at any time. - **Website:** https://creditclaw.com - **Skill (agent-facing):** https://creditclaw.com/SKILL.md - **API base:** `https://creditclaw.com/api/v1` ## Installation **OpenClaw / ClawHub:** ```bash clawhub install creditclaw ``` **skills.sh (Claude Code, Cursor, Codex, Copilot, and 20+ agents):** ```bash npx skills add jononovo/claw-skill ``` ## Setup 1. Your agent registers itself via the API (see `SKILL.md`) and receives a `CREDITCLAW_API_KEY`. 2. You sign in at [creditclaw.com](https://creditclaw.com), add your card, and create a Virtual Card linked to your agent — with the spending limit you choose. 3. That's it. Your agent can now pay online within your limits. ## Required environment | Variable | Description | |---|---| | `CREDITCLAW_API_KEY` | Issued to your agent at registration. Cannot be retrieved again — store it securely. | ## Usage Once installed, your agent uses the skill automatically when you ask it to buy something: > "Order this book from acmebooks.com for me." The agent lists its linked cards, mints fresh merchant-locked card numbers, fills the checkout form, and stops for you on any CAPTCHA, 3-D Secure, or OTP challenge. Every credential issuance is logged to your dashboard. ## Safety model - Card numbers are one-time and merchant-locked — minted per purchase, discarded after use. - Spending limits are enforced at the card network, not by agent goodwill. - You can freeze, unfreeze, or revoke any Virtual Card instantly from your dashboard. - The agent's API key only works against `creditclaw.com`. ## License MIT
_meta.json
{
"ownerId": "kn70b4sg802tznj0f1r5msxg9980ddmn",
"slug": "creditclaw",
"version": "2.9.13",
"publishedAt": 1784646685072
}skill-card.md
## Description: <br> CreditClaw lets agents pay online by minting fresh virtual card numbers from owner-controlled Visa or Mastercard cards with spending limits. <br> This skill is ready for commercial/non-commercial use. <br> ## Publisher: <br> [creditclaw](https://clawhub.ai/user/creditclaw) <br> ### License/Terms of Use: <br> MIT-0 <br> ## Use Case: <br> External users and their agents use this skill to make online purchases with human-owned virtual cards, while keeping card creation, spending limits, freezes, and revocation under the owner's control. <br> ### Deployment Geography for Use: <br> Global <br> ## Known Risks and Mitigations: <br> Risk: The skill gives an agent financial authority through CreditClaw virtual cards. <br> Mitigation: Install only when agent purchases are intended, keep spending limits tight, review linked cards, and use freeze or revoke controls when activity looks wrong. <br> Risk: The CREDITCLAW_API_KEY can spend the owner's money if exposed or sent to the wrong service. <br> Mitigation: Store the key as a protected credential, send it only to creditclaw.com, and rotate or revoke access if exposure is suspected. <br> Risk: Duplicate purchase attempts can occur after declines, payment-page errors, or authentication challenges. <br> Mitigation: Mint fresh card numbers only immediately before purchase, never retry declined payments, and stop for human review on CAPTCHA, 3-D Secure, OTP, or uncertain post-submit states. <br> ## Reference(s): <br> - [CreditClaw ClawHub listing](https://clawhub.ai/creditclaw/skills/creditclaw) <br> - [CreditClaw website](https://creditclaw.com) <br> - [CreditClaw agent skill](https://creditclaw.com/SKILL.md) <br> ## Skill Output: <br> **Output Type(s):** [Guidance, Shell commands, API Calls, Text] <br> **Output Format:** [Markdown with curl examples, JSON response examples, and checkout-field guidance] <br> **Output Parameters:** [1D] <br> **Other Properties Related to Output:** [Requires CREDITCLAW_API_KEY and user confirmation before invocation.] <br> ## Skill Version(s): <br> 2.9.13 (source: server release metadata; artifact metadata declares 3.0.0) <br> ## Ethical Considerations: <br> Users should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>
AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/creditclaw/skills/creditclaw",
"sourceUrl": "https://clawhub.ai/creditclaw/skills/creditclaw",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-09T04:37:08.834Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-creditclaw-creditclaw/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-creditclaw-creditclaw/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-09T04:37:08.834Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "4.9K downloads",
"href": "https://clawhub.ai/creditclaw/creditclaw",
"sourceUrl": "https://clawhub.ai/creditclaw/creditclaw",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-09T04:37:08.834Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "2.9.13",
"href": "https://clawhub.ai/creditclaw/creditclaw",
"sourceUrl": "https://clawhub.ai/creditclaw/creditclaw",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-07-21T15:11:25.072Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-creditclaw-creditclaw/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-creditclaw-creditclaw/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 2.9.13",
"description": "**Major update: Moves to a Virtual Cards-only system with a simplified, security-focused workflow.** - Deprecated all previous payment rails and merchant-specific guides; now supports only Virtual Cards issuance and use. - All supporting and companion documentation files have been removed; a new, concise README.md outlines current usage. - API workflow is simplified: Register bot, link Virtual Card, fetch card, mint fresh card numbers for each purchase, and fill at checkout. - Security and error-handling sections are streamlined and focused on Virtual Card best practices. - Core documentation (SKILL.md) rewritten for clarity and brevity; all obsolete merchant-specific and legacy files removed. - Version bumped to 3.0.0 to mark breaking changes and the new Virtual Card paradigm.",
"href": "https://clawhub.ai/creditclaw/creditclaw",
"sourceUrl": "https://clawhub.ai/creditclaw/creditclaw",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-07-21T15:11:25.072Z",
"isPublic": true
}
]
}Record generated Oct 9, 2026.
