智能客服机器人(含支付配置)- 开通付费版本
Security Analysis
medium confidenceThis skill is essentially a sales/payment page asking users to pay to personal Alipay/QQ accounts and offers activation via QQ, but it contains no integration code, credentials, or verifiable provisioning—this mismatch and the direct-personal-payment flow are suspicious and pose a fraud risk.
The name and description imply a commercial "smart customer service with payment/activation" capability, but the skill is only an instruction/sales document with payment instructions. There is no code, API integration, or declared credentials to actually enable or manage payments or membership activation. A legitimate paid integration would normally require API keys, webhooks, or install steps; those are absent, so the claimed capability is not delivered.
SKILL.md instructs users to pay directly to a specific Alipay account (phone-like number) and a QQ identifier and to include their QQ number as the remark. It describes a manual confirm/activation workflow via QQ. The instructions do not ask the agent to read local files or environment variables, but they explicitly direct users toward off-platform personal payment channels and collection of a user's QQ number—actions that can facilitate scams or untraceable payments.
There is no install spec and no code files (instruction-only). This minimizes technical attack surface (nothing written to disk or executed) and is consistent with the file being a marketing/payment instruction sheet.
The skill requests no environment variables or credentials, which is appropriate given there is no integration. However, instead of using official payment APIs or platform-managed billing, the skill directs users to pay personal accounts—this is not a technical credential mismatch but is a business/trust mismatch that increases fraud risk.
The skill does not request always:true and has no special privileges or config changes. It is user-invocable only and does not persist credentials or modify other skills.
Guidance
This skill appears to be a sales/activation sheet rather than a functional integration. Before using or paying: (1) Do not send money to personal Alipay or QQ accounts without independent verification of the vendor (verify company name, business license, and corporate bank/payment info). (2) Prefer platform-supported or traceable payment methods and ask for an official invoice/contract. (3) Ask for a live demo or proof of service and a verifiable contact (corporate email, phone, or website). (4) Be cautious about entering your QQ number or other identifiers as payment remarks — this ties payment to an account outside the platform. (5) If you expected a technical skill that integrates payments or activations automatically, do not install — this skill provides only manual payment instructions. (6) If in doubt, contact the platform support and report the skill for verification before making any payment.
Latest Release
v1.0.0
Initial release of smart-customer-service-cn-payment. - 发布智能客服机器人(付费版),支持多套餐选择(基础版、Pro版、企业版)。 - 集成支付宝、QQ支付多种支付方式,提供详细开通流程和激活引导。 - 支持高级功能:多渠道接入、AI智能对话、私有化部署、定制开发、数据分析等。 - 提供多项优惠:新用户首月折扣、续费和团购优惠、推荐奖励。 - 明确售后保障:支持7天无理由退款及开票服务。 - 提供专属客服支持,涵盖咨询、开票、升级等问题解答。
More by @huyong2023
Published by @huyong2023 on ClawHub