paddleIntegrate Paddle payments with subscriptions, webhooks, checkout, and tax compliance.
Install via ClawdBot CLI:
clawdbot install ivangdavila/paddleGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://api.paddle.com/customersCalls external URL not in known-safe list
https://clawic.com/skills/paddleAI Analysis
The skill interacts with Paddle's legitimate payment APIs (sandbox and production) for its stated purpose, and the external call to its own homepage is for documentation. However, the 'UNKNOWN_DATA_SINK' signal for sending customer data to Paddle's API is expected behavior for a payment integration skill, not unauthorized exfiltration.
Audited Apr 17, 2026 · audit v1.0
Generated Mar 21, 2026
A software-as-a-service company needs to manage recurring payments, handle trial periods, and process upgrades or downgrades for customers. This skill automates API calls for subscription creation, webhook verification for real-time updates, and tax compliance based on customer location.
An e-learning platform sells courses with one-time payments or subscription access to content libraries. The skill integrates Paddle checkout for secure payments, manages subscription states like active or canceled to control course access, and handles webhooks for enrollment confirmations and renewals.
A media company offers premium articles, videos, or podcasts through a membership model. This skill sets up recurring billing, processes failed payments using Paddle Retain to reduce churn, and verifies webhooks to grant or revoke access based on subscription status changes.
Independent professionals need to bill clients for project-based work or retainer agreements. The skill facilitates one-time checkout for invoices, manages subscription plans for ongoing services, and ensures tax compliance by sending customer data to Paddle for accurate calculations.
Generates recurring revenue through monthly or annual plans, with features like trials, upgrades, and proration. This model relies on the skill to handle active, past_due, and canceled states, ensuring seamless access management and retention via Paddle Retain for failed payments.
Offers a free basic service with premium features available via subscription. The skill integrates checkout for upgrades, manages webhooks to sync user access levels, and uses sandbox testing to avoid issues when transitioning users from free to paid plans.
Sells digital products like e-books, software licenses, or templates as single purchases. This model uses the skill for secure checkout processing, tax compliance, and webhook verification to deliver products immediately after payment, without subscription management overhead.
💬 Integration Tip
Always test in sandbox first to avoid real charges, and map Paddle IDs like customer_id to internal records for accurate user management.
Scored Apr 18, 2026
Security vetting protocol before installing any AI agent skill. Red flag detection for credential theft, obfuscated code, exfiltration. Risk classification L...
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Audit a user's current AI tool stack. Score each tool by ROI, identify redundancies, gaps, and upgrade opportunities. Produces a structured report with score...
Comprehensive security auditing for Clawdbot deployments. Scans for exposed credentials, open ports, weak configs, and vulnerabilities. Auto-fix mode included.
Audit codebases and infrastructure for security issues. Use when scanning dependencies for vulnerabilities, detecting hardcoded secrets, checking OWASP top 10 issues, verifying SSL/TLS, auditing file permissions, or reviewing code for injection and auth flaws.
Solve CAPTCHAs using 2Captcha service via CLI. Use for bypassing captchas during web automation, account creation, or form submission.