Invoice Automation

PassAudited by VirusTotal on May 11, 2026.

Overview

Type: OpenClaw Skill Name: invoice-automation Version: 98.0.1 The skill bundle contains only metadata and markdown instructions (SKILL.md) for an AI agent to perform AR/AP invoice automation tasks like aging analysis and payment matching. It includes explicit safety boundaries, such as requiring human approval ('Irfan') before sending emails and maintaining a read-only status for accounting systems, with no evidence of malicious code, data exfiltration, or prompt injection attacks.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

If used with messaging tools, the agent could prepare or send overdue-payment emails containing amounts, late-fee language, or collection escalation wording.

Why it was flagged

The skill contemplates outbound collection communications, which can affect client relationships if an email or messaging tool is available, but it explicitly requires approval before sending.

Skill content
draft or send overdue payment follow-ups ... NOT for: ... sending client communications without Irfan approval
Recommendation

Review recipients, invoice amounts, tone, late-fee language, and approval status before allowing any message to be sent.