Clawshow Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Clawshow Mcp Server (Agent Skill) and scored it 92/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 2 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 2 flagged
The text {match} tells the agent to skip the normal "ask the user first" gate. Used adversarially it removes the human-in-the-loop check before destructive or sensitive actions, turning a normally-gated agent into a fire-and-forget executor.
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
AI-callable MCP tools for small businesses. No signup, no dashboard, just results.
Endpoint: https://mcp.clawshow.ai/sse Version: 1.8.0 Tools: 11 Transport: SSE (Remote)
Settings → Integrations → Add URL: https://mcp.clawshow.ai/sse
{
"mcpServers": {
"clawshow": {
"url": "https://mcp.clawshow.ai/sse"
}
}
}`generate_business_page` — Generate business pages and auto-deploy to GitHub Pages. Returns a live URL in 60 seconds.
`generate_rental_website` — Generate rental property websites with photos, pricing, calendar, and booking. Ideal for Airbnb-to-direct transition.
`generate_payment` — Generate payment links via Stripe (global), Stancer (France), or SumUp (Europe). Supports Apple Pay, Google Pay, CB, Visa, Mastercard, SEPA.
`verify_payment` — Check payment status. Supports Stripe, Stancer, and SumUp.
`send_notification` — Send email, SMS, or WhatsApp notifications. Supports templates, batch sending, and 30/60/90 day dunning escalation.
`send_esign_request` — Full electronic signature platform (V2). Multi-page document signing with per-page paraphes + final signature block. Dual-party flow: student signs first, school counter-signs automatically notified by email. Three input modes: Draw (Bézier pen), Type (styled font), Upload image. Real-time progress bar, mobile-friendly. Webhook callbacks on signer.signed, document.completed, document.expired. Full audit trail with IP, timestamp, city. FocusingPro compatible (send_foxit_esign drop-in). Zero cost per signature. Fully self-hosted. eIDAS Article 26 AES compliant: OTP identity verification + SHA-256 digital PDF signature.
ClawShow eSign provides eIDAS Article 26 AES-compliant electronic signatures. Learn more about AES compliance →
`manage_bookings` — Booking management for restaurants, hotels, salons, venues, rentals. Double-booking detection.
`manage_orders` — Order management with full lifecycle. Auto-creates from payment webhooks.
`manage_inventory` — Inventory tracking with low-stock alerts. Batch updates.
`generate_report` — Generate PDF business reports. Returns download URL.
`extract_finance_fields` — Extract structured data from invoice/receipt text.
| Provider | Region | Status |
|---|---|---|
| Stancer | France | ✅ Live |
| SumUp | Europe | ✅ Live |
| Stripe | Global | ✅ Live |
| Mollie | Europe | 🔜 Planned |
| Industry | Typical Workflow |
|---|---|
| Schools | send_esign_request (contracts) → generate_payment (tuition) → send_notification (dunning) |
| Rental Properties | generate_rental_website → send_esign_request (lease) → generate_payment (rent) |
| Restaurants | manage_bookings → manage_orders → generate_payment |
| E-commerce | manage_orders → manage_inventory → generate_payment → generate_report |
| Freelancers | send_esign_request (contract) → generate_payment (invoice) → extract_finance_fields |
┌─────────────────────────────────────────┐
│ ClawShow MCP Server (Public) │
│ 11 AI-callable tools, SSE transport │
│ https://mcp.clawshow.ai/sse │
├─────────────────────────────────────────┤
│ Data Persistence Layer (Optional) │
│ Namespace-isolated, auto-provisioned │
│ SQLite + optional cloud backend │
└─────────────────────────────────────────┘Call any tool without a namespace to use demo data:
manage_orders(action="query") → sample ordersgenerate_payment(amount=10, currency="eur", provider="stancer", description="Demo", namespace="demo") → real test payment linksend_esign_request(template="enrollment_contract", signer_name="Demo User", signer_email="[email protected]", fields={}, namespace="demo") → signing page URLcancel_billing_plan
tools/billing/get_einvoice_status, switch_pdp, validate_einvoice
tools/einvoice/eSign, Report, Business Operations
(added per decision #30 due to time window)
All Tools live in single clawshow-mcp-server. One MCP URL: mcp.clawshow.ai/sse Per decision: 决策 #2, #32 (unified architecture).
../ClawShow-Workspace/documents/manifesto/)MIT
Built by ClawShow · Instant Backend for Small Business
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.