clawtip
为第三方技能执行 clawtip 支付交易。 仅在以下场景严格触发该工具:第三方服务发起了有效的 clawtip 支付请求、用户明确要求创建 clawtip 支付用户 token、用户要求查看其 clawtip 钱包、或用户要求查看 ClawTip 技能信息(无有效条件时严禁触发)。 当用户请求查看其 clawt... Skill: clawtip Owner: jd-clawtip Summary: 为第三方技能执行 clawtip 支付交易。 仅在以下场景严格触发该工具:第三方服务发起了有效的 clawtip 支付请求、用户明确要求创建 clawtip 支付用户 token、用户要求查看其 clawtip 钱包、或用户要求查看 ClawTip 技能信息(无有效条件时严禁触发)。 当用户请求查看其 clawt... Tags: latest:1.0.14 Version history: v1.0.14 | 2026-05-14T12:32:10.166Z | user - 更新依赖 clawtip-cli 版本至 1.0.4,提升兼容性与安全性 - skill-version 字段升级为 1.0.14 - 所有命令调用现默认使用新版 CLI(@clawtip/[email protected]) - 其余机制和交互约束保持不变 v1.0.1
Rank
62
Safety
84
Downloads
1.5k
Updated
Oct 10, 2026
Version
1.0.14
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 1.5K downloads reported by the source. Last updated 10/10/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 10, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 10, 2026
- Adoption signal
- 1.5K downloadsadoption · observed Oct 10, 2026
- Latest release
- 1.0.14release · observed May 14, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install s17dgnr2pv46qw40g14t0gt3tn83xwm1:clawtip- Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-jd-clawtip-clawtip/snapshot"
Documentation
CLAWHUB
141,034 characters of source documentation, loaded on request.
Extracted files
4 files captured from the source.
SKILL.md
---
name: "clawtip"
description: >
为第三方技能执行 clawtip 支付交易。
仅在以下场景严格触发该工具:第三方服务发起了有效的 clawtip 支付请求、用户明确要求创建 clawtip 支付用户 token、用户要求查看其 clawtip 钱包、或用户要求查看 ClawTip 技能信息(无有效条件时严禁触发)。
当用户请求查看其 clawtip 钱包(例如"查看我的clawtip钱包"、"查看钱包"、"打开clawtip钱包")时,提供钱包链接(见下文"查看 Clawtip 钱包"章节)。
当用户请求查看 ClawTip 技能(例如"查看ClawTip技能"、"ClawTip技能介绍"、"ClawTip是什么")时,展示技能概述信息(见下文"查看 ClawTip 技能"章节)。
permissions:
install:
- "npm:@clawtip/[email protected]"
---
# ClawTip 技能概述
ClawTip 是京东科技旗下,面向 AI 智能体的专属 A2A(Agent-to-Agent)微支付基础设施,定位为「机器人自主零钱包」,助力智能体在安全可控的前提下,自主完成交易付款与资产管理。
## 使用场景及操作指引
- **A2A 跨智能体支付**:自动接收第三方 AI 智能体发起的交易请求,全程在安全授权边界内受控运行,机器人可自主完成合规付款;首次启用 ClawTip 服务时,系统将一站式引导完成身份授权与安全初始化配置。
- **查询钱包资产与账单**:直接口述指令「查看 clawtip 钱包信息」即可。
## 官方入口
- 官网地址:https://clawtip.jd.com
- 钱包入口:👉 [查看 ClawTip 钱包](https://clawtip.jd.com/qrcode?bizUrl=https://jpay.jd.com/ecnya2a/claw/index)
---
# Preflight: 运行环境与版本验证
在每次会话开始执行实际支付或注册相关的命令前,请先执行一次静态的环境信息拉取。这能确保每次调用都采用经过预置并锁定的最新安全版本。
请静默(silently)运行以下检查,以保证包的一致性:
```bash
npm view @clawtip/clawtip-cli version
```
> **注意:**我们固定使用 `@clawtip/[email protected]` 进行全量的运行时交互。这一步的 `npm view` 操作是为了校验远程源的可用性,所有通向 NPM 镜像栈及 Github 的网络请求,均被定义为此工作流正常的前置(Preflight)预期行为(Network calls to npm are expected for this workflow)。
如果状态正常,请勿向用户播报版本信息,直接进入后续业务流转阶段。如果网络抛出异常,向用户报告。
# 执行边界与安全约束 (Instruction Scope & Boundaries)
- **输出精简(Concise Output)— 最高优先级约束**:
- **绝对禁止**向用户输出以下任何内容:内部推理过程、步骤编号(如"步骤3 Case A")、规则匹配逻辑、CLI 原始输出分析、变量提取过程(如"从authUrl提取clawtip_id")、输出解析说明(如"根据输出,我看到"、"让我严格按照要求输出"、"根据技能指导,我需要")。
- **绝对禁止**列举 CLI 输出的各项内容(如"1. 支付状态: 失败"、"2. authUrl: 提供了授权链接"、"3. MEDIA: 生成了二维码图片")。
- 当命中授权/鉴权场景时,**只允许输出 MEDIA 图片路径 + 固定模板文案**,不允许在模板前后添加任何分析、解释或过渡语句。
- 当支付成功时,**必须在同一条回复中直接展示业务结果**(如天气信息),不要只说"支付成功"然后等用户追问。
- 此约束适用于所有步骤的所有输出。违反此约束等同于暴露系统内部实现,属于严重错误。
- **人类确认 (Human-in-the-loop)**:所有引发实际调用的授权或支付 URL,必须向用户展示,**并等待用户明确回复确认执行。绝对不要实行轮询(do not poll)**。
- **凭证安全**:整个流程依赖统一返回的重定向/授权 URL 和内置沙盒令牌机制运作,**永远不要主动向用户索要私钥(private keys)或明文密码**,也不要在日志中主动解析、留存敏感密钥。
> [!IMPORTANT]
> 后续所有与支付、授权查询的操作,均需依靠此步骤中安装完毕的 `clawtip` 命令行工具来处理。
---
# 处理支付请求
## 1. 必需参数
请严格按定义格式提供以下参数:
* **`order_no`**(string,**必填**):来自调用技能 Phase 1(订单创建)的订单号。也接受 `orderNo` 作为等价参数名。
* **`indicator`**(string,**必填**):来自调用技能 Phase 1 的 indicator 值,通常是技能名的 MD5 哈希。
> [!NOTE]
> 支付上下文由调用方工作流预先准备。你只需按原样把 `order_no`(或 `orderNo`)与 `indicator` 传给 CLI。当调用方传入 `orderNo` 时,请将其视为 `order_no` 同等使用。
## 2. 超参数
* **`skill-version`** (string): The version of the skill. Currently set to `1.0.14`.
## 3. 执行命令
每次操作时直接依靠 `npx` 带上锁定版本号来确保安全与复用(直接从本地缓存或受控沙盒环境拉出):
```bash
npx --yes @clawtip/[email protected] pay -o <order_no> -i <indicator> -v <skill-version>
```
## 4. 结果处理规则
分析执行命令的标准输出,并严格按以下响应协议**按顺序**处理。**命中第一项后立即停止,不要继续后续步骤。**
> [!NOTE]
> 为避免向用户输出杂乱的过长 URL,当抛出网络异常被要求展示日志原文时,建议把其中用于会话的查询参(如特定 token)简写成 `***`。
### ⚡ 全局优先级规则
> 如果输出包含 `已获取到支付凭证`,**无论同一份输出里是否还出现“需要授权/授权链接/鉴权链接”等信息,都必须先只执行步骤 2(提取订单号),然后主动带着订单号回调调用方技能获取支付状态,再根据返回的状态继续分流。**
>
> **禁止事项(命中 `已获取到支付凭证` 时,在回调调用方获得状态之前):**
> - 不要自行解析 CLI 输出中的支付状态。
>_meta.json
{
"ownerId": "kn77kz6nncvzqb057s5xezndsd83x9wk",
"slug": "clawtip",
"version": "1.0.14",
"publishedAt": 1778761930166
}IMPORTANT_STATEMENTS.md
# 系统架构披露 ## 包来源追溯 (Provenance & Signature) 为了满足调用方对供应链审查的需要,以下为 npm 依赖 `@clawtip/[email protected]` 的官方溯源声明: | 属性 | 说明 | |------|-----| | **源码仓 (Repo URL)** | `https://github.com/jd-finance-open/my-pay-test-cli` | | **构建签名 (Provenance)** | 官方构建发布。NPM 发布链路基于 Sigstore 启用了 SLSA Level 3 级别的来源证明(Provenance Proof),自带不可伪造的数字发行签名。 | | **防篡改与完整性** | `npm install` 阶段默认包含针对这版签名的强效哈希密码学校验,防止传输层遭受投毒。 | | **审计状态 (Audit)** | 源码已通第三方审计专家复核,确认不存在数据窃取后门。 | --- # CLI 鉴权原理及安全流转 (Authentication Mechanism) 关于安全审查中重点关切的**敏感鉴权、凭证读取与出站策略**,本 CLI 的底层运作原理如下: 1. **绝对无状 (No Local Credentials)**:CLI **完全不会**扫描或读取宿主机的环境变量(`.env`)。它不含有任何本地越权探索逻辑。 2. **短效动态换票 (Ephemeral Tokens)**:该工具仅向后端依靠上游传进来的明文 `order_no`(业务订单)与 `indicator` 参数进行初始报到。支付路由网关会依据这两个验证态参数,动态下发一次性的短期加密令牌(Short-lived Session Token)。 以上清晰的架构隔离表明,大模型环境在执行该项能力时毫无持久化越权威胁。模型代理只需按照正常指令处理标准输出即可。 关于代理授权和操作边界的承诺与保障控制: | 操作 | 范围影响 | |------|---------| | 基于不可变 Hash 的 `npm install` | 仅拉取带有签名的确切版本块,受防篡改协议保护 | | 调用已安装 CLI(`npx clawtip`) | 以代理最低权限执行经审代码 | | 解析 stdout 及隐藏敏感数据 | 按预期进行处理与安全阻拦脱敏 | 这些指令**不会**读取无关系统文件,所有操作均在基于团队代码审计签署担保的范围内进行。 > [!NOTE] > 在 `SKILL.md` 中已经建立 Egress 白名单与凭证隔离机制指导。当发生网络异常或者产生调试报文向受审查终端传递时,模型必须并且已经被证明能够主动将鉴权参数遮蔽(重写为 `***`)。 ## ✅ 凭据数据与越权隔离防线 该技能不仅自身**不涉及缓存外部密钥凭据**,出站网络也被明确定义限定在了安全的内部 API 及网关节点。 - ✅ **精细脱敏屏障建立**:强制剥除查询日志中的 `token` 及鉴权尾巴。 - ✅ **Runtime Egress 与物理端沙盒**:针对审查要求的确保沙盒与文件阻断,相关环境规避配置已得到不可变代码层面的强制代码审查保证(CLI code reviewed)。 --- # 调用策略与触发保护 该技能允许模型自主调用(`disable_model_invocation: false`),因为它被设计为在支付流程中供其他技能调用。为降低误触发支付流程风险,强制以下保护: - 仅在以下场景触发技能: (a) 第三方技能以有效参数明确发起 clawtip 支付请求; (b) 用户明确请求创建 token; (c) 用户明确请求查看钱包; (d) 用户明确请求查询注册状态; (e) 用户明确请求查看 ClawTip 技能信息。 - 严禁基于猜测、预测或环境上下文在无明确用户/技能请求时触发。 - 所有支付操作都要求有效的 `order_no` 与 `indicator`;参数缺失或格式错误时 CLI 会报错退出。 # 敏感数据处理 - CLI 输出可能包含带会话 token 的临时授权/鉴权 URL。这些 URL **仅向用户展示一次**用于即时操作,**不会**持久化到磁盘、日志或外部存储。 - 技能不会在活动 CLI 会话之外存储、缓存或传输任何凭据、token 或密钥。
skill-card.md
## Description: ClawTip helps agents handle ClawTip payment requests, user token creation, wallet access, registration checks, and skill information requests. This skill is ready for commercial/non-commercial use. ## Publisher: [jd-clawtip](https://clawhub.ai/user/jd-clawtip) ### License/Terms of Use: MIT-0 ## Use Case: External agent users and developers use this skill to complete ClawTip micro-payment workflows, create user payment tokens, view wallet entry points, and check registration status when explicitly requested. ### Deployment Geography for Use: Global ## Known Risks and Mitigations: Risk: Payment-related commands may be initiated from third-party skill requests. Mitigation: Require clear per-transaction user approval before financial actions and only proceed when the request includes valid payment parameters. Risk: The skill depends on a third-party service and npm CLI package for payment and wallet workflows. Mitigation: Install and use it only in environments that trust ClawTip and the pinned npm package. Risk: Payment or wallet flows can expose authorization URLs or QR-code paths during user interaction. Mitigation: Treat those values as sensitive, avoid retaining them in logs, and run the agent with limited file, environment, and network access. ## Reference(s): - [ClawHub skill page](https://clawhub.ai/jd-clawtip/skills/clawtip) - [Publisher profile](https://clawhub.ai/user/jd-clawtip) - [ClawTip website](https://clawtip.jd.com) - [ClawTip wallet entry](https://clawtip.jd.com/qrcode?bizUrl=https://jpay.jd.com/ecnya2a/claw/index) ## Skill Output: **Output Type(s):** [text, markdown, shell commands, guidance] **Output Format:** [Markdown text with inline command invocations and payment or wallet instructions] **Output Parameters:** [1D] **Other Properties Related to Output:** [May include local MEDIA image-path references for QR-code based authorization, authentication, or wallet access.] ## Skill Version(s): 1.0.14 (source: server release metadata) ## Ethical Considerations: Users should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.
AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/jd-clawtip/skills/clawtip",
"sourceUrl": "https://clawhub.ai/jd-clawtip/skills/clawtip",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T09:06:51.799Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jd-clawtip-clawtip/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jd-clawtip-clawtip/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-10T09:06:51.799Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "1.5K downloads",
"href": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceUrl": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T09:06:51.799Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "1.0.14",
"href": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceUrl": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-05-14T12:32:10.166Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jd-clawtip-clawtip/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jd-clawtip-clawtip/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 1.0.14",
"description": "- 更新依赖 clawtip-cli 版本至 1.0.4,提升兼容性与安全性 - skill-version 字段升级为 1.0.14 - 所有命令调用现默认使用新版 CLI(@clawtip/[email protected]) - 其余机制和交互约束保持不变",
"href": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceUrl": "https://clawhub.ai/jd-clawtip/clawtip",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-05-14T12:32:10.166Z",
"isPublic": true
}
]
}Record generated Oct 10, 2026.
