Real Skill packageSource verifiedClawHub registry

sber-business

Работа со СберБизнес API: пошаговый онбординг со ссылками, Zero-Knowledge Vault (AES-256-GCM), выбор канала уведомлений (Telegram/MAX/Discord/Slack/Webhook), остатки, платежки, ссылка на подпись, выгрузка PDF со штампом банка.

Identity and source

Publisher attributionSynthet1xregistry owner unverified by skillvetai
Functional categorySearch, Research & Knowledgeautomatically inferred · 59% rule confidence
Package forminstruction with code11 recorded files
Canonical sourceClawHub registryclawhub:synthet1x:sber-business
Open canonical source ↗

Platform declarations

These states come from the source or distribution context. None of the entries below are SkillVetAI compatibility test results.

OpenClawnative officialProvenance: registry distribution

Independent structural checks

These checks parse the fixed package against dated platform rules. They do not execute the Skill or verify task behavior.

Claude Codeissues found
Checker 0.1.0 · agent-skills-2026-08-13+claude-code-docs-2026-08-13 · 9/20/2026.claude/skills/<skill-name>
1 structural issue
  • error: The fixed release did not provide readable SKILL.md content. SKILL.md

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

OpenAI Codexissues found
Checker 0.1.0 · agent-skills-2026-08-13+codex-docs-2026-08-13 · 9/20/2026.agents/skills/<skill-name>
1 structural issue
  • error: The fixed release did not provide readable SKILL.md content. SKILL.md

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

OpenClawissues found
Checker 0.1.0 · agent-skills-2026-08-13+openclaw-docs-2026-08-13 · 9/20/2026skills/<skill-name>
1 structural issue
  • error: The fixed release did not provide readable SKILL.md content. SKILL.md

Runtime, accounts, dependencies, permissions, network behavior and task quality remain untested.

Installation and inspection

This command is recorded from the source ecosystem and resolves the registry's latest release. The fixed release shown on this page should be inspected before adoption.

clawhub install @synthet1x/sber-business
clawhub inspect @synthet1x/sber-business --version 1.0.3

Security evidence

SkillVetAI static result: medium signal

This automated, non-executing scan is bound to this release hash. It is not a safety certification and may contain false positives or false negatives.

Status
completed
Coverage
partial text content
Files
6 / 11 inspected as text
Checked
9/20/2026, 4:09:55 PM
Scanner
0.1.3
Policy
1.0.3
1 automated finding
mediumSKILL.md content was not available to the scannerSKILL.md · confidence 100%content unavailable
3 inferred permission indicators
  • shell execution — automatically inferred
  • network access — automatically inferred
  • filesystem write — automatically inferred
9 dependency and API indicators
  • api: api.mycompany.ru
  • api: api.telegram.org
  • api: clawhub.ai
  • api: discord.com
  • api: fintech.sberbank.ru
  • api: hooks.slack.com
  • api: platform-api2.max.ru
  • api: t.me
  • api: www.gosuslugi.ru
External clawhub result: clean

This is registry-supplied evidence for the recorded release, not an independent SkillVetAI scan. Check the canonical source for the full report, scanner versions, scope, and current moderation state.

Evidence checked
9/20/2026, 3:32:09 PM
Release binding
Matches this record
  • vt: clean
  • skillspector: suspicious
  • llm: clean

Recorded files

The catalog stores hashes and an inventory summary for change detection. It does not republish the package contents.

Package content hashsha256:e1ad69dcfc9f48482edcb6470151d64921079bd7e0d542e3b91142d16ee6a790
Show up to 11 recorded paths
  • README.md
  • references/HUMAN_GUIDE.md
  • references/NOTIFICATION_CHANNELS.md
  • scripts/config.example.json
  • scripts/poller.py
  • scripts/sber_api.py
  • scripts/sber_download.py
  • scripts/sber_payments.py
  • scripts/sber_vault.py
  • skill-card.md
  • SKILL.md

Source changelog

v1.0.3: Complete security compliance update: process-safe stdin openssl certificate decryption, removed legacy plaintext .env fallback, strict HTTPS requirement for webhooks, privacy-compliant financial data masking option, and explicit permission/endpoint declarations in metadata.

Release security diff

mediumCompared fixed releases 1.0.2 and 1.0.3; 1 finding and 0 permission indicators were added.

Both fixed releases were scanned under the current scanner and policy, so finding, permission and dependency changes are available.

Change reasons and limitations
  • finding surface changed
  • dependency surface changed
  • file surface changed
  • content hash changed

Observed release history

These older immutable releases were observed by prior successful syncs. They remain recorded when a newer release becomes current.

1.0.29/20/2026sha256:93f6421994cef17f4764da0e1472312664a1235137bf8d5dc11203adb9b774a5