{"id":"149788a7-518e-4402-a583-3e832c01f5c0","entityType":"agent","slug":"clawhub-jinyu12166-clawtip-skill","name":"clawtip-skill","canonicalUrl":"https://www.xpersona.co/agent/clawhub-jinyu12166-clawtip-skill","canonicalPath":"/agent/clawhub-jinyu12166-clawtip-skill","generatedAt":"2026-10-10T10:43:20.010Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":null},"description":"Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Skill: clawtip-skill Owner: jinyu12166 Summary: Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Tags: latest:1.0.11 Version history: v1.0.11 | 2026-07-28T15:08:45.652Z | auto Version 1.0.11 - Major rework: transitions fro","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. 1.6K downloads reported by the source. Last updated 10/10/2026.","installCommand":"clawhub skill install s17bk5y82fk590863n8fb20zvn8afqra:clawtip-skill","sourceUrl":"https://clawhub.ai/jinyu12166/clawtip-skill","homepage":"https://clawhub.ai/jinyu12166/skills/clawtip-skill","primaryLinks":[{"label":"View on ClawHub","url":"https://clawhub.ai/jinyu12166/clawtip-skill","kind":"source"},{"label":"Homepage","url":"https://clawhub.ai/jinyu12166/skills/clawtip-skill","kind":"homepage"}],"safetyScore":84,"overallRank":62,"popularityScore":64,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfa"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[],"verifiedCount":0,"selfDeclaredCount":1,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile"}},"adoption":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":null},"stars":null,"forks":null,"downloads":1556,"packageName":null,"latestVersion":"1.0.11","tractionLabel":"1.6K downloads"},"release":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":null},"lastUpdatedAt":"2026-10-10T08:29:48.927Z","lastCrawledAt":"2026-10-10T08:29:48.927Z","lastIndexedAt":null,"nextCrawlAt":"2026-10-11T08:29:48.927Z","lastVerifiedAt":null,"highlights":[{"version":"1.0.11","createdAt":"2026-07-28T15:08:45.652Z","changelog":"Version 1.0.11 - Major rework: transitions from a payment-processing skill to a free developer reference guide. - SKILL.md replaced with documentation for building paid skills on ClawHub, including compliance tips, architecture, and common pitfalls. - Payment processing scripts and user-facing payment instructions removed. - Skill no longer handles payments or payment credential writing.","fileCount":3,"zipByteSize":3057},{"version":"1.0.10","createdAt":"2026-07-21T13:53:10.209Z","changelog":"- Removed the file skill-card.md. - No changes to skill features or behavior.","fileCount":4,"zipByteSize":6737},{"version":"1.0.9","createdAt":"2026-07-21T11:01:08.554Z","changelog":"- Removed the file skill-card.md from the project. - No functional or documentation updates; this release is a cleanup of redundant or outdated files.","fileCount":4,"zipByteSize":6777},{"version":"1.0.8","createdAt":"2026-07-20T05:32:36.200Z","changelog":"Version 1.0.8 - Removed the file skill-card.md. - Added `ssq-analyzer` and `soft-ip-full-lifecycle-zijian` to the recommended related skills list in documentation.","fileCount":4,"zipByteSize":6567},{"version":"1.0.7","createdAt":"2026-07-18T09:37:21.112Z","changelog":"Version 1.0.7 - Updated SKILL.md version history to include 1.0.4, noting the addition of a QR code quick payment option (WeChat/Alipay). - Removed the skill-card.md file. - No changes to functional logic or APIs.","fileCount":4,"zipByteSize":6505},{"version":"1.0.6","createdAt":"2026-07-18T06:22:15.767Z","changelog":"- Removed the redundant skill-card.md file. - Updated scripts/pay.py with internal changes (details not shown). - No user-facing functional changes; documentation and primary SKILL.md usage remain unchanged.","fileCount":4,"zipByteSize":6414},{"version":"1.0.5","createdAt":"2026-07-18T04:06:21.166Z","changelog":"- Removed the file skill-card.md from the project. - No changes were made to feature logic or documentation content.","fileCount":4,"zipByteSize":6137},{"version":"1.0.4","createdAt":"2026-07-18T03:00:22.396Z","changelog":"v1.0.4 - Added guidance that ClawTip is a payment helper for other paid skills. - Added recommended next skills including memory, soft IP, database, QA/security, and research workflows. - Clarified payment metadata boundaries and next-step workflow after successful payment.","fileCount":4,"zipByteSize":6143}]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install s17bk5y82fk590863n8fb20zvn8afqra:clawtip-skill","setupComplexity":"low","setupSteps":["Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-10T10:43:20.009Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-jinyu12166-clawtip-skill/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"high","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":null},"readme":"Skill: clawtip-skill\n\nOwner: jinyu12166\n\nSummary: Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments.\n\nTags: latest:1.0.11\n\nVersion history:\n\nv1.0.11 | 2026-07-28T15:08:45.652Z | auto\n\nVersion 1.0.11\n\n- Major rework: transitions from a payment-processing skill to a free developer reference guide.\n- SKILL.md replaced with documentation for building paid skills on ClawHub, including compliance tips, architecture, and common pitfalls.\n- Payment processing scripts and user-facing payment instructions removed.\n- Skill no longer handles payments or payment credential writing.\n\nv1.0.10 | 2026-07-21T13:53:10.209Z | user\n\n- Removed the file skill-card.md.\n- No changes to skill features or behavior.\n\nv1.0.9 | 2026-07-21T11:01:08.554Z | user\n\n- Removed the file skill-card.md from the project.\n- No functional or documentation updates; this release is a cleanup of redundant or outdated files.\n\nv1.0.8 | 2026-07-20T05:32:36.200Z | user\n\nVersion 1.0.8\n\n- Removed the file skill-card.md.\n- Added `ssq-analyzer` and `soft-ip-full-lifecycle-zijian` to the recommended related skills list in documentation.\n\nv1.0.7 | 2026-07-18T09:37:21.112Z | auto\n\nVersion 1.0.7\n\n- Updated SKILL.md version history to include 1.0.4, noting the addition of a QR code quick payment option (WeChat/Alipay).\n- Removed the skill-card.md file.\n- No changes to functional logic or APIs.\n\nv1.0.6 | 2026-07-18T06:22:15.767Z | auto\n\n- Removed the redundant skill-card.md file.\n- Updated scripts/pay.py with internal changes (details not shown).\n- No user-facing functional changes; documentation and primary SKILL.md usage remain unchanged.\n\nv1.0.5 | 2026-07-18T04:06:21.166Z | auto\n\n- Removed the file skill-card.md from the project.\n- No changes were made to feature logic or documentation content.\n\nv1.0.4 | 2026-07-18T03:00:22.396Z | user\n\nv1.0.4\n- Added guidance that ClawTip is a payment helper for other paid skills.\n- Added recommended next skills including memory, soft IP, database, QA/security, and research workflows.\n- Clarified payment metadata boundaries and next-step workflow after successful payment.\n\nv1.0.2 | 2026-07-17T01:34:22.049Z | auto\n\nclawtip-skill v1.0.2\n\n- SERVER_URL now hardcoded to a fixed payment endpoint for improved security.\n- User-facing NOTICE message added to scripts/pay.py to inform before actual payment.\n- Security disclaimer section added to SKILL.md.\n- Removed skill-card.md file.\n\nv1.0.1 | 2026-07-16T14:16:02.148Z | user\n\nAdd pay.py script + payment endpoint support\n\nv1.0.0 | 2026-07-16T14:15:20.770Z | auto\n\nInitial release of clawtip skill — automated payment handling for skill ecosystem.\n\n- Implements automated payment processing for OpenClaw skills.\n- Locates order files using order number and indicator (MD5 hash).\n- Reads order details from local JSON files.\n- Executes payment command and handles transaction via external script.\n- Automatically writes payment credential to order file upon success.\n- Supports sandbox mode for test payments by switching the skill identifier.\n\nArchive index:\n\nArchive v1.0.11: 3 files, 3057 bytes\n\nFiles: skill-card.md (1578b), SKILL.md (2881b), _meta.json (133b)\n\nFile v1.0.11:SKILL.md\n\n---\nname: \"clawtip-skill\"\ndescription: >\n  Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments.\nmetadata:\n  author: \"Yujin\"\n  category: \"reference\"\n  version: \"1.0.0\"\n---\n\n# ClawTip 开发者指南\n\n## 这是什么\n\n这是一个**免费的参考指南技能**，面向想在 ClawHub 上构建付费技能的开发者。本技能不处理任何支付或订单，只提供文档和指引。\n\n如果你正在寻找官方的支付处理技能，请安装 `clawtip`（正式环境）或 `clawtip-sandbox`（测试环境）。\n\n---\n\n## 技能支付链搭建流程\n\n### 标准三阶段架构\n\n```\nPhase 1: create_order.py → 本地订单文件（SM4 加密）\nPhase 2: clawtip 钱包 → 扣款 → payCredential 回写\nPhase 3: service.py → 验证凭证 → AI 交付服务\n```\n\n### 核心原则\n\n| 原则 | 说明 |\n|------|------|\n| AI 对话交付型 | 脚本只负责支付验证，实际服务由 AI 在对话中交付 |\n| 零远程调用 | create_order.py 和 service.py 不发起任何 HTTP 请求 |\n| 内联加密 | SM4 加密和订单文件管理内联到脚本中，不使用独立模块 |\n\n### 关键约束\n\n| 约束 | 说明 |\n|------|------|\n| `encrypted_data` | 仅加密 `{\"orderNo\":\"...\",\"amount\":\"...\",\"payTo\":\"...\"}`，不加额外字段 |\n| 错误信息用英文 | SkillSpector 会将中文错误消息标记为 Natural-Language Policy |\n| 无 `file_utils.py` | 订单文件管理必须内联，否则被标记为\"隐藏能力\" |\n| 无 `sm4_utils.py` | SM4 必须内联到 create_order.py |\n| 版本号递增 | 每次修改后版本号 +1 |\n\n---\n\n## SkillSpector 高频被拒项\n\n| # | 发现类型 | 触发条件 | 修复方法 |\n|---|---------|----------|----------|\n| 1 | Description-Behavior Mismatch | 描述和代码行为不一致 | service.py 输出明确的服务交付清单 |\n| 2 | MCP Tool Poisoning | 描述声称做某事但代码只有支付 | 明确为 AI 对话交付型 |\n| 3 | Context-Inappropriate Capability | file_utils.py 等独立模块 | 内联到脚本中 |\n| 4 | Natural-Language Policy | 中文错误消息 | 所有系统输出用英文 |\n| 5 | Unvalidated Output Injection | `subprocess.run()` 调用脚本 | 改为直接 import + 函数调用 |\n\n---\n\n## 推荐资源\n\n- 完整构建标准文档：`paid/BUILD_STANDARD.md`（详细模板 + 检查清单）\n- 参考技能示例：`ssq-analyzer`、`innovation-research`、`soft-ip-full-lifecycle-zijian`\n- 沙箱测试：`npx @clawtip/clawtip-sandbox-cli@1.0.0 pay`\n- 官方钱包：`openclaw skills install clawtip`\n\n---\n\n## 版本历史\n\n| Version | Date | Notes |\n|:--------|:-----|:------|\n| 1.0.0 | 2026-07-28 | Initial release as free developer guide (replaces legacy payment middle) |\n\nFile v1.0.11:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.11\",\n  \"publishedAt\": 1785251325652\n}\n\nFile v1.0.11:skill-card.md\n\n## Description:\n\nFree developer guide for building paid skills on ClawHub, covering the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls; it does not handle payments.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[jinyu12166](https://clawhub.ai/user/jinyu12166)\n\n### License/Terms of Use:\n\nMIT-0\n\n## Use Case:\n\nDevelopers building paid ClawHub skills use this reference to understand the expected payment-flow architecture, SkillSpector compliance constraints, sandbox testing, and common implementation pitfalls.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: The referenced npx sandbox command would execute third-party package code if followed.\n\nMitigation: Verify the @clawtip/clawtip-sandbox-cli package and run it only in a least-privileged test environment without production secrets.\n\n## Reference(s):\n\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill)\n\n## Skill Output:\n\n**Output Type(s):** [Guidance, Shell commands, Configuration]\n\n**Output Format:** [Markdown with inline shell commands]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Reference-only; no bundled executable code.]\n\n## Skill Version(s):\n\n1.0.11 (source: server release metadata)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.\n\nArchive v1.0.10: 4 files, 6737 bytes\n\nFiles: scripts/pay.py (8090b), skill-card.md (2150b), SKILL.md (4861b), _meta.json (133b)\n\nFile v1.0.10:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n - `ssq-analyzer`：双色球智能分析，冷热号统计 + 规则过滤 + 推荐号码。\n - `soft-ip-full-lifecycle-zijian`：软著申报材料自检，合规性审查与登记就绪审计。\n \n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.4 | 2026-07-18 | Added QR code quick payment option (WeChat/Alipay) for faster checkout alongside ClawTip standard flow. |\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.10:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.10\",\n  \"publishedAt\": 1784641990209\n}\n\nFile v1.0.10:skill-card.md\n\n## Description: <br>\nClawTip is a payment helper for OpenClaw paid skills that locates local order files, initiates or confirms payment, and writes payment credentials for fulfillment. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal OpenClaw users and developers use this skill to process orders created by paid business skills, write payment credentials to the local order file, and continue fulfillment verification in the target skill. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill contacts a fixed payment server and sends order/payment metadata. <br>\nMitigation: Use it only when you trust the payment endpoint and the order source, and review the order number, amount, recipient, slug, and local order file before running the payment command. <br>\nRisk: Successful payment or confirmation may update the local order file. <br>\nMitigation: Check the updated order file and payment credential before returning to the target skill for fulfillment verification. <br>\n\n\n## Reference(s): <br>\n- [ClawTip Skill on ClawHub](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [ClawTip payment endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, configuration, guidance] <br>\n**Output Format:** [Markdown guidance with shell commands and terminal status lines] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Emits PAY_RESULT, CREDENTIAL, ORDER_NO, AMOUNT, and NEXT_STEP status lines; successful payment or confirmation may update the local order JSON with payCredential.] <br>\n\n## Skill Version(s): <br>\n1.0.10 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.9: 4 files, 6777 bytes\n\nFiles: scripts/pay.py (8056b), skill-card.md (2273b), SKILL.md (4861b), _meta.json (132b)\n\nFile v1.0.9:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n - `ssq-analyzer`：双色球智能分析，冷热号统计 + 规则过滤 + 推荐号码。\n - `soft-ip-full-lifecycle-zijian`：软著申报材料自检，合规性审查与登记就绪审计。\n \n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.4 | 2026-07-18 | Added QR code quick payment option (WeChat/Alipay) for faster checkout alongside ClawTip standard flow. |\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.9:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.9\",\n  \"publishedAt\": 1784631668554\n}\n\nFile v1.0.9:skill-card.md\n\n## Description: <br>\nClawTip helps OpenClaw users process paid skill orders by reading a local order file, initiating or confirming payment through a fixed payment API, and writing the returned payment credential back to the order file. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal OpenClaw users and developers use this skill when a paid business skill has created an order and they need to initiate payment, confirm an external payment reference, and return to the target skill for fulfillment. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: Payment execution can affect wallet or external payment state. <br>\nMitigation: Confirm the order source, amount, payee, order_no, and indicator with the user before running the payment script. <br>\nRisk: The skill writes payment credentials into a local order JSON file. <br>\nMitigation: Run it only against the intended order path and review the target skill's fulfillment step after payment succeeds. <br>\nRisk: The instructions are primarily in Chinese and could be misunderstood by users who cannot read them. <br>\nMitigation: Install and operate the skill only when the user understands the payment instructions and the paid OpenClaw workflow. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, JSON, guidance] <br>\n**Output Format:** [Console status text, inline shell commands, and local JSON order-file updates] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Reads order_no and indicator inputs; may write payCredential and paymentReference fields to the matching local order JSON file.] <br>\n\n## Skill Version(s): <br>\n1.0.9 (source: ClawHub release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.8: 4 files, 6567 bytes\n\nFiles: scripts/pay.py (7166b), skill-card.md (2199b), SKILL.md (4861b), _meta.json (132b)\n\nFile v1.0.8:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n - `ssq-analyzer`：双色球智能分析，冷热号统计 + 规则过滤 + 推荐号码。\n - `soft-ip-full-lifecycle-zijian`：软著申报材料自检，合规性审查与登记就绪审计。\n \n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.4 | 2026-07-18 | Added QR code quick payment option (WeChat/Alipay) for faster checkout alongside ClawTip standard flow. |\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.8:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.8\",\n  \"publishedAt\": 1784525556200\n}\n\nFile v1.0.8:skill-card.md\n\n## Description: <br>\nClawTip helps OpenClaw users process paid-skill orders, write payment credentials to local order files, and continue fulfillment verification. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal OpenClaw users use this skill to initiate and confirm payment for existing paid-skill orders after a target business skill has created an order number and indicator. Developers can also use it to test the paid-skill order, payment, and fulfillment handoff. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill processes payments and can write payment credentials to local OpenClaw order files. <br>\nMitigation: Verify the order source, amount, recipient, order number, indicator, and confirmation reference before running the payment confirmation step. <br>\nRisk: The skill contacts an external payment service at https://api.ideaidea.com.cn. <br>\nMitigation: Run it only when outbound network access to that service is expected and the user has approved payment processing. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [Publisher profile](https://clawhub.ai/user/jinyu12166) <br>\n- [Payment service endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Text, Shell commands, Configuration, Files] <br>\n**Output Format:** [Console text with payment status fields and local JSON order-file updates] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Requires an existing order_no, a 32-character indicator, and an explicit confirmation reference before writing a payment credential.] <br>\n\n## Skill Version(s): <br>\n1.0.8 (source: server release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.7: 4 files, 6505 bytes\n\nFiles: scripts/pay.py (7166b), skill-card.md (2221b), SKILL.md (4662b), _meta.json (132b)\n\nFile v1.0.7:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.4 | 2026-07-18 | Added QR code quick payment option (WeChat/Alipay) for faster checkout alongside ClawTip standard flow. |\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.7:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.7\",\n  \"publishedAt\": 1784367441112\n}\n\nFile v1.0.7:skill-card.md\n\n## Description: <br>\nClawtip Skill helps OpenClaw users process paid-skill orders, initiate and confirm payments through ClawTip, and write payment credentials back to the local order file. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nOpenClaw users and developers use this payment helper after a paid business skill creates an order, then return to the target skill for fulfillment verification. It is for order payment and credential handoff, not for producing the paid skill's business deliverable. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill contacts a fixed payment API and writes payment credentials into a local order file. <br>\nMitigation: Before running it, verify the order number, amount, target skill, and pay_to value in the local order file, and only use orders you intentionally created and trust. <br>\nRisk: A mismatched or unclear order could result in payment being applied to the wrong target skill. <br>\nMitigation: Stop and inspect the order source when the order file is missing, the amount is unexpected, or the target skill is unclear. <br>\n\n\n## Reference(s): <br>\n- [Clawtip Skill on ClawHub](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [Payment API endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, configuration] <br>\n**Output Format:** [Terminal status lines and JSON order-file updates] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Reads a local order JSON file, posts order/payment confirmation metadata to the payment service, and writes payCredential and paymentReference on successful confirmation.] <br>\n\n## Skill Version(s): <br>\n1.0.7 (source: server release metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.6: 4 files, 6414 bytes\n\nFiles: scripts/pay.py (7166b), skill-card.md (2350b), SKILL.md (4534b), _meta.json (132b)\n\nFile v1.0.6:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.6:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.6\",\n  \"publishedAt\": 1784355735767\n}\n\nFile v1.0.6:skill-card.md\n\n## Description: <br>\nClawTip helps OpenClaw paid-skill users initiate payment, confirm external payment completion, write the returned payment credential into the local order file, and return to the business skill for fulfillment verification. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal users and developers use this skill as the payment step for OpenClaw paid skills after a business skill creates an order. It reads the local order metadata, initiates payment, confirms payment after the user completes it externally, and writes the payment credential needed for fulfillment verification. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill can initiate and confirm paid-skill payments using local order metadata. <br>\nMitigation: Confirm the order file came from the intended skill and verify amount and pay_to before initiating payment or running the confirmation step. <br>\nRisk: Payment confirmation sends order identifiers and payment confirmation details to https://api.ideaidea.com.cn and stores the returned credential locally. <br>\nMitigation: Only confirm after completing the external payment, and protect local order files that contain payCredential and paymentReference values. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [Payment API endpoint disclosed by artifact](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, guidance, configuration] <br>\n**Output Format:** [Markdown guidance with inline shell commands and script status lines] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [The skill may update the local order JSON file with payCredential and paymentReference after successful confirmation.] <br>\n\n## Skill Version(s): <br>\n1.0.6 (source: ClawHub release evidence) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.5: 4 files, 6137 bytes\n\nFiles: scripts/pay.py (5523b), skill-card.md (2089b), SKILL.md (4534b), _meta.json (132b)\n\nFile v1.0.5:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.5:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.5\",\n  \"publishedAt\": 1784347581166\n}\n\nFile v1.0.5:skill-card.md\n\n## Description: <br>\nClawTip processes payment orders for OpenClaw paid skills by reading local order metadata, initiating wallet payment, and writing the returned payment credential for fulfillment verification. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal users and developers use this skill to pay for OpenClaw paid-skill orders after a target business skill has created an order. It is used as a payment handoff tool, not as the business skill that produces the final deliverable. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill initiates a real wallet payment through a fixed API endpoint. <br>\nMitigation: Before running it, confirm the order number, target skill, and amount in the local order file. <br>\nRisk: The returned payment credential is written to the local order file. <br>\nMitigation: Install and run the skill only when this payment flow is intended, and keep the local order file in the expected OpenClaw orders directory. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [Fixed payment API endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Shell commands, Text, Configuration, Guidance] <br>\n**Output Format:** [Markdown guidance with shell commands and text status output] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [The payment script prints PAY_RESULT status lines and writes a returned payCredential into the local order JSON file on success.] <br>\n\n## Skill Version(s): <br>\n1.0.5 (source: ClawHub release metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.4: 4 files, 6143 bytes\n\nFiles: scripts/pay.py (5523b), skill-card.md (2134b), SKILL.md (4534b), _meta.json (132b)\n\nFile v1.0.4:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  ClawTip 支付技能，用于 OpenClaw 付费技能的订单支付、支付凭证写入和履约验证衔接。它本身是支付工具，不替代业务技能；安装后建议继续使用 obsidian-memory-system、cross-platform-memory-hub、soft-ip-full-lifecycle-delivery-pro、database-specialist 等核心付费技能。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# ClawTip 支付处理技能\n\n## 这是什么\n\n本技能是付费技能生态的支付工具。其他付费技能先创建订单，本技能再根据 `order_no` 和 `indicator` 找到本地订单文件，完成钱包扣款，并把支付凭证写回订单文件。\n\n它适合已经准备使用以下技能的用户：\n\n- `obsidian-memory-system`：Obsidian 永久记忆、日志沉淀和每日复盘。\n- `cross-platform-memory-hub`：跨平台记忆枢纽，连接 Codex、OpenClaw、Claude Code 等工作流。\n- `soft-ip-full-lifecycle-delivery-pro`：软著申报材料全链路整理辅助。\n- `database-specialist`：数据库结构、SQL、索引和性能专项诊断。\n- `qa-security`：测试策略、安全审计、风险分级和上线前质量检查。\n- `innovation-research`：技术调研、竞品对比、可行性分析和路线建议。\n\n## 用户下一步\n\n如果你只是安装了本技能，还不会产生业务交付。请继续选择一个核心业务技能并按它的说明创建订单。\n\n推荐路径：\n\n```text\n1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果\n```\n\n## 调用参数\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 目标业务技能创建的订单号 |\n| `indicator` | string | 目标业务技能 slug 的 MD5 标识 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取支付所需字段：`skill-id`、`order_no`、`amount`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n成功后，脚本会输出：\n\n```text\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n失败时，脚本会输出：\n\n```text\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 5. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件。随后应回到目标业务技能执行 `scripts/service.py \"<order_no>\"` 完成履约验证。\n\n## 支付前提示\n\n执行支付前，请先向用户说明：\n\n```text\n即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。\n```\n\n## 安全说明\n\n- 固定支付端点：`https://api.ideaidea.com.cn`。\n- 本技能只处理订单元数据和支付凭证。\n- 不读取用户业务代码、Obsidian 笔记、数据库连接信息或软著材料内容。\n- 如订单文件缺失、金额异常或目标技能不明确，应停止支付并提示用户检查订单来源。\n- 推荐开发者先用沙箱环境测试完整链路，再引导真实用户支付。\n\n## 转化观察建议\n\n开发者可定期查看服务端订单数据，观察下载、创建订单、支付成功和履约完成之间的转化情况：\n\n```sql\nSELECT slug, COUNT(*) AS orders_count,\n       SUM(CASE WHEN order_status = 'PAID' THEN 1 ELSE 0 END) AS paid_count,\n       SUM(CASE WHEN fulfill_status = 'FULFILLED' THEN 1 ELSE 0 END) AS fulfilled_count\nFROM orders\nGROUP BY slug\nORDER BY orders_count DESC;\n```\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.3 | 2026-07-18 | Added conversion-focused guidance, related paid skill recommendations, and clearer payment safety boundaries. |\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.4:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.4\",\n  \"publishedAt\": 1784343622396\n}\n\nFile v1.0.4:skill-card.md\n\n## Description: <br>\nClawTip processes OpenClaw paid-skill orders by reading a local order file, initiating wallet payment, and writing the returned payment credential for fulfillment verification. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nExternal OpenClaw users and developers use this skill to pay for paid skills after a target skill creates an order. The skill is used to bridge payment completion to the target skill's fulfillment verification flow. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill can initiate real wallet payments without a strong built-in confirmation or amount validation step. <br>\nMitigation: Only run it for orders the user recognizes, and confirm the target skill and amount from the order file before invoking payment. <br>\nRisk: The payment endpoint and returned credential are sensitive payment infrastructure. <br>\nMitigation: Treat the endpoint and payment credential as sensitive; restrict access to local order files that receive payCredential. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n- [ClawTip payment endpoint](https://api.ideaidea.com.cn) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [text, shell commands, files, configuration] <br>\n**Output Format:** [Markdown guidance with inline shell commands, terminal status text, and JSON order-file updates.] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Takes order_no and indicator inputs; on successful payment, writes payCredential to the local order JSON file.] <br>\n\n## Skill Version(s): <br>\n1.0.4 (source: server release metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.2: 4 files, 5070 bytes\n\nFiles: scripts/pay.py (5523b), skill-card.md (2078b), SKILL.md (2445b), _meta.json (132b)\n\nFile v1.0.2:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  clawtip 支付技能 — 处理技能付费的支付流程。根据订单号和标识符自动定位订单文件，\n  完成钱包扣款，并将支付凭证写入订单文件。供其他付费技能调用。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# clawtip 支付处理技能\n\n## 概述\n\n本技能处理 OpenClaw 技能生态中的付费流程。当其他付费技能（如 obsidian-memory-system）创建订单后，AI 需调用本技能完成支付。\n\n**调用参数：**\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 第一阶段生成的订单号 |\n| `indicator` | string | 技能 slug 的 MD5 哈希值 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取：`skill-id`、`order_no`、`amount`、`question`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n使用以下命令处理支付：\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n### 5. 输出处理\n\n**成功时**，脚本输出：\n```\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n**失败时**，脚本输出：\n```\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 6. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件的 `payCredential` 字段。\n\n---\n\n## 沙箱测试\n\n将以下命令中的 `clawtip` 替换为 `clawtip-sandbox` 即可使用沙箱环境测试，无需真实扣款。\n\n## 安全说明\n\n- 本技能使用固定支付端点 `https://api.ideaidea.com.cn`，不依赖环境变量。\n- 执行支付前脚本会输出 NOTICE 提示——AI 应在执行前向用户说明即将发起扣款。\n- 推荐新用户优先使用 `clawtip-sandbox` 沙箱测试。\n\n## 版本历史\n\n| Version | Date | Notes |\n|:---|:---|:---|\n| 1.0.2 | 2026-07-17 | Fixed SERVER_URL to hardcoded domain, added user-facing NOTICE before payment, added security disclaimer to SKILL.md. |\n| 1.0.1 | 2026-07-16 | Initial ClawHub upload. |\n\nFile v1.0.2:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.2\",\n  \"publishedAt\": 1784252062049\n}\n\nFile v1.0.2:skill-card.md\n\n## Description: <br>\nClawtip Skill processes paid-skill checkout by locating an existing local order file, initiating payment, and writing the returned payment credential back to the order file. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and agents in OpenClaw paid-skill workflows use this skill to complete payment for an existing order and record the resulting payment credential in the local order file. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill can trigger a real wallet payment without an enforced confirmation step showing the amount or payee first. <br>\nMitigation: Before execution, confirm the order amount, payee, skill being purchased, and user intent; use the sandbox variant for testing. <br>\nRisk: The skill reads and writes local order files and stores a returned payment credential. <br>\nMitigation: Run it only for the expected order_no and indicator, then verify the updated order file contains only the intended payment credential change. <br>\n\n\n## Reference(s): <br>\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Text, Shell commands, Configuration] <br>\n**Output Format:** [Plain text payment status lines and credential output, with Markdown usage instructions] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Requires order_no and indicator arguments; writes payCredential into the local order JSON file after successful payment.] <br>\n\n## Skill Version(s): <br>\n1.0.2 (source: server release metadata and target metadata) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>\n\nArchive v1.0.1: 4 files, 4739 bytes\n\nFiles: scripts/pay.py (5271b), skill-card.md (2273b), SKILL.md (1911b), _meta.json (132b)\n\nFile v1.0.1:SKILL.md\n\n---\nname: \"clawtip\"\ndescription: >\n  clawtip 支付技能 — 处理技能付费的支付流程。根据订单号和标识符自动定位订单文件，\n  完成钱包扣款，并将支付凭证写入订单文件。供其他付费技能调用。\nmetadata:\n  author: \"ClawTip\"\n  category: \"payment\"\n  capabilities:\n    - \"payment.process\"\n  permissions:\n    - \"credential.read\"\n    - \"filesystem.read\"\n    - \"filesystem.write\"\n    - \"network.outbound\"\n---\n\n# clawtip 支付处理技能\n\n## 概述\n\n本技能处理 OpenClaw 技能生态中的付费流程。当其他付费技能（如 obsidian-memory-system）创建订单后，AI 需调用本技能完成支付。\n\n**调用参数：**\n\n| 参数 | 类型 | 说明 |\n|------|------|------|\n| `order_no` | string | 第一阶段生成的订单号 |\n| `indicator` | string | 技能 slug 的 MD5 哈希值 |\n\n## 工作流程\n\n### 1. 接收订单信息\n\n从调用方获取 `order_no` 和 `indicator`。\n\n### 2. 定位订单文件\n\n订单文件存储在固定路径：\n- Linux/macOS: `~/.openclaw/skills/orders/{indicator}/{order_no}.json`\n- Windows: `~\\openclaw\\skills\\orders\\{indicator}\\{order_no}.json`\n\n### 3. 读取订单数据\n\n从订单 JSON 文件中读取：`skill-id`、`order_no`、`amount`、`question`、`encrypted_data`、`pay_to`、`description`、`slug`、`resource_url`。\n\n### 4. 执行支付\n\n使用以下命令处理支付：\n\n```bash\npython3 scripts/pay.py \"<order_no>\" \"<indicator>\"\n```\n\n### 5. 输出处理\n\n**成功时**，脚本输出：\n```\nPAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>\n```\n\n**失败时**，脚本输出：\n```\nPAY_RESULT: FAIL\nERROR_INFO: <错误详情>\n```\n\n### 6. 写入支付凭证\n\n支付成功后，`payCredential` 会自动写入订单 JSON 文件的 `payCredential` 字段。\n\n---\n\n## 沙箱测试\n\n将以下命令中的 `clawtip` 替换为 `clawtip-sandbox` 即可使用沙箱环境测试，无需真实扣款。\n\nFile v1.0.1:_meta.json\n\n{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.1\",\n  \"publishedAt\": 1784211362148\n}\n\nFile v1.0.1:skill-card.md\n\n## Description: <br>\nClawtip Skill helps an agent complete OpenClaw paid-skill orders by reading a local order file, calling a payment endpoint, and writing the returned payment credential. <br>\n\nThis skill is ready for commercial/non-commercial use. <br>\n\n## Publisher: <br>\n[jinyu12166](https://clawhub.ai/user/jinyu12166) <br>\n\n### License/Terms of Use: <br>\nMIT-0 <br>\n\n\n## Use Case: <br>\nDevelopers and agents in OpenClaw paid-skill workflows use this skill to complete a specific paid order using an order number and skill indicator. The skill reads the matching local order JSON, submits the payment request, and records the returned payment credential for downstream use. <br>\n\n### Deployment Geography for Use: <br>\nGlobal <br>\n\n## Known Risks and Mitigations: <br>\nRisk: The skill can trigger a real wallet payment flow and write payment credentials. <br>\nMitigation: Use it only for an intended order, verify the order number and indicator before execution, and prefer the sandbox flow for testing. <br>\nRisk: The payment endpoint can be changed through CLAWTIP_SERVER_URL. <br>\nMitigation: Run the skill in a controlled environment and ensure CLAWTIP_SERVER_URL is unset or set only to a trusted endpoint. <br>\nRisk: The skill modifies local order JSON files. <br>\nMitigation: Inspect the target order file before payment and keep local file permissions scoped to trusted users. <br>\n\n\n## Reference(s): <br>\n- [ClawHub Skill Page](https://clawhub.ai/jinyu12166/skills/clawtip-skill) <br>\n\n\n## Skill Output: <br>\n**Output Type(s):** [Shell commands, Text, Files] <br>\n**Output Format:** [Command invocation plus line-oriented text status; successful runs write payCredential into the local order JSON file.] <br>\n**Output Parameters:** [1D] <br>\n**Other Properties Related to Output:** [Requires order_no and indicator inputs, reads a local order file, and uses an outbound payment API.] <br>\n\n## Skill Version(s): <br>\n1.0.1 (source: server release evidence, released 2026-07-16) <br>\n\n## Ethical Considerations: <br>\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment. <br>","readmeExcerpt":"Skill: clawtip-skill Owner: jinyu12166 Summary: Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Tags: latest:1.0.11 Version history: v1.0.11 | 2026-07-28T15:08:45.652Z | auto Version 1.0.11 - Major rework: transitions fro","codeSnippets":[],"executableExamples":[{"language":"text","snippet":"Phase 1: create_order.py → 本地订单文件（SM4 加密）\nPhase 2: clawtip 钱包 → 扣款 → payCredential 回写\nPhase 3: service.py → 验证凭证 → AI 交付服务"},{"language":"text","snippet":"1. 安装并打开目标业务技能\n2. 目标业务技能执行 scripts/create_order.py 生成 ORDER_NO 和 INDICATOR\n3. 使用本技能处理支付\n4. 回到目标业务技能执行 scripts/service.py 验证履约\n5. 继续获得目标业务技能的具体交付结果"},{"language":"bash","snippet":"python3 scripts/pay.py \"<order_no>\" \"<indicator>\""},{"language":"text","snippet":"PAY_RESULT: SUCCESS\nCREDENTIAL: <支付凭证>"},{"language":"text","snippet":"PAY_RESULT: FAIL\nERROR_INFO: <错误详情>"},{"language":"text","snippet":"即将通过 ClawTip 支付目标技能订单。支付金额以订单文件中的 amount 为准。本技能只处理订单元数据和支付凭证，不上传目标业务内容。"}],"parameters":null,"dependencies":[],"permissions":[],"extractedFiles":[{"path":"SKILL.md","content":"---\nname: \"clawtip-skill\"\ndescription: >\n  Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments.\nmetadata:\n  author: \"Yujin\"\n  category: \"reference\"\n  version: \"1.0.0\"\n---\n\n# ClawTip 开发者指南\n\n## 这是什么\n\n这是一个**免费的参考指南技能**，面向想在 ClawHub 上构建付费技能的开发者。本技能不处理任何支付或订单，只提供文档和指引。\n\n如果你正在寻找官方的支付处理技能，请安装 `clawtip`（正式环境）或 `clawtip-sandbox`（测试环境）。\n\n---\n\n## 技能支付链搭建流程\n\n### 标准三阶段架构\n\n```\nPhase 1: create_order.py → 本地订单文件（SM4 加密）\nPhase 2: clawtip 钱包 → 扣款 → payCredential 回写\nPhase 3: service.py → 验证凭证 → AI 交付服务\n```\n\n### 核心原则\n\n| 原则 | 说明 |\n|------|------|\n| AI 对话交付型 | 脚本只负责支付验证，实际服务由 AI 在对话中交付 |\n| 零远程调用 | create_order.py 和 service.py 不发起任何 HTTP 请求 |\n| 内联加密 | SM4 加密和订单文件管理内联到脚本中，不使用独立模块 |\n\n### 关键约束\n\n| 约束 | 说明 |\n|------|------|\n| `encrypted_data` | 仅加密 `{\"orderNo\":\"...\",\"amount\":\"...\",\"payTo\":\"...\"}`，不加额外字段 |\n| 错误信息用英文 | SkillSpector 会将中文错误消息标记为 Natural-Language Policy |\n| 无 `file_utils.py` | 订单文件管理必须内联，否则被标记为\"隐藏能力\" |\n| 无 `sm4_utils.py` | SM4 必须内联到 create_order.py |\n| 版本号递增 | 每次修改后版本号 +1 |\n\n---\n\n## SkillSpector 高频被拒项\n\n| # | 发现类型 | 触发条件 | 修复方法 |\n|---|---------|----------|----------|\n| 1 | Description-Behavior Mismatch | 描述和代码行为不一致 | service.py 输出明确的服务交付清单 |\n| 2 | MCP Tool Poisoning | 描述声称做某事但代码只有支付 | 明确为 AI 对话交付型 |\n| 3 | Context-Inappropriate Capability | file_utils.py 等独立模块 | 内联到脚本中 |\n| 4 | Natural-Language Policy | 中文错误消息 | 所有系统输出用英文 |\n| 5 | Unvalidated Output Injection | `subprocess.run()` 调用脚本 | 改为直接 import + 函数调用 |\n\n---\n\n## 推荐资源\n\n- 完整构建标准文档：`paid/BUILD_STANDARD.md`（详细模板 + 检查清单）\n- 参考技能示例：`ssq-analyzer`、`innovation-research`、`soft-ip-full-lifecycle-zijian`\n- 沙箱测试：`npx @clawtip/clawtip-sandbox-cli@1.0.0 pay`\n- 官方钱包：`openclaw skills install clawtip`\n\n---\n\n## 版本历史\n\n| Version | Date | Notes |\n|:--------|:-----|:------|\n| 1.0.0 | 2026-07-28 | Initial release as free developer guide (replaces legacy payment middle) |"},{"path":"_meta.json","content":"{\n  \"ownerId\": \"kn71ajnjnjnhwfs7mmzpg48t9d8af45f\",\n  \"slug\": \"clawtip-skill\",\n  \"version\": \"1.0.11\",\n  \"publishedAt\": 1785251325652\n}"},{"path":"skill-card.md","content":"## Description:\n\nFree developer guide for building paid skills on ClawHub, covering the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls; it does not handle payments.\n\nThis skill is ready for commercial/non-commercial use.\n\n## Publisher:\n\n[jinyu12166](https://clawhub.ai/user/jinyu12166)\n\n### License/Terms of Use:\n\nMIT-0\n\n## Use Case:\n\nDevelopers building paid ClawHub skills use this reference to understand the expected payment-flow architecture, SkillSpector compliance constraints, sandbox testing, and common implementation pitfalls.\n\n### Deployment Geography for Use:\n\nGlobal\n\n## Known Risks and Mitigations:\n\nRisk: The referenced npx sandbox command would execute third-party package code if followed.\n\nMitigation: Verify the @clawtip/clawtip-sandbox-cli package and run it only in a least-privileged test environment without production secrets.\n\n## Reference(s):\n\n- [ClawHub skill page](https://clawhub.ai/jinyu12166/skills/clawtip-skill)\n\n## Skill Output:\n\n**Output Type(s):** [Guidance, Shell commands, Configuration]\n\n**Output Format:** [Markdown with inline shell commands]\n\n**Output Parameters:** [1D]\n\n**Other Properties Related to Output:** [Reference-only; no bundled executable code.]\n\n## Skill Version(s):\n\n1.0.11 (source: server release metadata)\n\n## Ethical Considerations:\n\nUsers should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment."}],"languages":[],"docsSourceLabel":"CLAWHUB","editorialOverview":"Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Skill: clawtip-skill Owner: jinyu12166 Summary: Free developer guide for building paid skills on ClawHub. Explains the standard three-phase payment flow, SkillSpector compliance requirements, and common pitfalls for developers building ClawHub skills. Reference only — does not handle payments. Tags: latest:1.0.11 Version history: v1.0.11 | 2026-07-28T15:08:45.652Z | auto Version 1.0.11 - Major rework: transitions fro","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":970,"uniquenessScore":51,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-10-10T08:29:48.927Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-10T10:43:20.010Z","emptyReason":null},"items":[{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-10-09T19:11:12.944Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}