clawtip-skill
Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Skill: clawtip-skill Owner: jinyu12166 Summary: Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Tags: latest:1.0.11 Version history: v1.0.11 | 2026-07-28T15:08:45.652Z | auto Version 1.0.11 - Major rework: transitions fro
Rank
62
Safety
84
Downloads
1.6k
Updated
Oct 10, 2026
Version
1.0.11
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 1.6K downloads reported by the source. Last updated 10/10/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 10, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 10, 2026
- Adoption signal
- 1.6K downloadsadoption · observed Oct 10, 2026
- Latest release
- 1.0.11release · observed Jul 28, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install s17bk5y82fk590863n8fb20zvn8afqra:clawtip-skill- Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/snapshot"
Documentation
CLAWHUB
54,149 characters of source documentation, loaded on request.
Extracted files
3 files captured from the source.
SKILL.md
---
name: "clawtip-skill"
description: >
Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments.
metadata:
author: "Yujin"
category: "reference"
version: "1.0.0"
---
# ClawTip 开发者指南
## 这是什么
这是一个**免费的参考指南技能**,面向想在 ClawHub 上构建付费技能的开发者。本技能不处理任何支付或订单,只提供文档和指引。
如果你正在寻找官方的支付处理技能,请安装 `clawtip`(正式环境)或 `clawtip-sandbox`(测试环境)。
---
## 技能支付链搭建流程
### 标准三阶段架构
```
Phase 1: create_order.py → 本地订单文件(SM4 加密)
Phase 2: clawtip 钱包 → 扣款 → payCredential 回写
Phase 3: service.py → 验证凭证 → AI 交付服务
```
### 核心原则
| 原则 | 说明 |
|------|------|
| AI 对话交付型 | 脚本只负责支付验证,实际服务由 AI 在对话中交付 |
| 零远程调用 | create_order.py 和 service.py 不发起任何 HTTP 请求 |
| 内联加密 | SM4 加密和订单文件管理内联到脚本中,不使用独立模块 |
### 关键约束
| 约束 | 说明 |
|------|------|
| `encrypted_data` | 仅加密 `{"orderNo":"...","amount":"...","payTo":"..."}`,不加额外字段 |
| 错误信息用英文 | SkillSpector 会将中文错误消息标记为 Natural-Language Policy |
| 无 `file_utils.py` | 订单文件管理必须内联,否则被标记为"隐藏能力" |
| 无 `sm4_utils.py` | SM4 必须内联到 create_order.py |
| 版本号递增 | 每次修改后版本号 +1 |
---
## SkillSpector 高频被拒项
| # | 发现类型 | 触发条件 | 修复方法 |
|---|---------|----------|----------|
| 1 | Description-Behavior Mismatch | 描述和代码行为不一致 | service.py 输出明确的服务交付清单 |
| 2 | MCP Tool Poisoning | 描述声称做某事但代码只有支付 | 明确为 AI 对话交付型 |
| 3 | Context-Inappropriate Capability | file_utils.py 等独立模块 | 内联到脚本中 |
| 4 | Natural-Language Policy | 中文错误消息 | 所有系统输出用英文 |
| 5 | Unvalidated Output Injection | `subprocess.run()` 调用脚本 | 改为直接 import + 函数调用 |
---
## 推荐资源
- 完整构建标准文档:`paid/BUILD_STANDARD.md`(详细模板 + 检查清单)
- 参考技能示例:`ssq-analyzer`、`innovation-research`、`soft-ip-full-lifecycle-zijian`
- 沙箱测试:`npx @clawtip/[email protected] pay`
- 官方钱包:`openclaw skills install clawtip`
---
## 版本历史
| Version | Date | Notes |
|:--------|:-----|:------|
| 1.0.0 | 2026-07-28 | Initial release as free developer guide (replaces legacy payment middle) |_meta.json
{
"ownerId": "kn71ajnjnjnhwfs7mmzpg48t9d8af45f",
"slug": "clawtip-skill",
"version": "1.0.11",
"publishedAt": 1785251325652
}skill-card.md
## Description: Free developer guide for building paid skills on ClawHub, covering the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls; it does not handle payments. This skill is ready for commercial/non-commercial use. ## Publisher: [jinyu12166](https://clawhub.ai/user/jinyu12166) ### License/Terms of Use: MIT-0 ## Use Case: Developers building paid ClawHub skills use this reference to understand the expected payment-flow architecture, SkillSpector compliance constraints, sandbox testing, and common implementation pitfalls. ### Deployment Geography for Use: Global ## Known Risks and Mitigations: Risk: The referenced npx sandbox command would execute third-party package code if followed. Mitigation: Verify the @clawtip/clawtip-sandbox-cli package and run it only in a least-privileged test environment without production secrets. ## Reference(s): - [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) ## Skill Output: **Output Type(s):** [Guidance, Shell commands, Configuration] **Output Format:** [Markdown with inline shell commands] **Output Parameters:** [1D] **Other Properties Related to Output:** [Reference-only; no bundled executable code.] ## Skill Version(s): 1.0.11 (source: server release metadata) ## Ethical Considerations: Users should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.
AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/jinyu12166/skills/clawtip-skill",
"sourceUrl": "https://clawhub.ai/jinyu12166/skills/clawtip-skill",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T08:29:48.927Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-10T08:29:48.927Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "1.6K downloads",
"href": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceUrl": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T08:29:48.927Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "1.0.11",
"href": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceUrl": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-07-28T15:08:45.652Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 1.0.11",
"description": "Version 1.0.11 - Major rework: transitions from a payment-processing skill to a free developer reference guide. - SKILL.md replaced with documentation for building paid skills on ClawHub, including compliance tips, architecture, and common pitfalls. - Payment processing scripts and user-facing payment instructions removed. - Skill no longer handles payments or payment credential writing.",
"href": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceUrl": "https://clawhub.ai/jinyu12166/clawtip-skill",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-07-28T15:08:45.652Z",
"isPublic": true
}
]
}Record generated Oct 10, 2026.
