← 返回 Skills 市场
arbengine

mailbox.bot

作者 arbengine · GitHub ↗ · v4.0.0 · MIT-0
cross-platform ✓ 安全检测通过
1487
总下载
2
收藏
1
当前安装
9
版本数
在 OpenClaw 中安装
/install mailbox-bot
功能描述
Real mailing address for your AI agent. Receive, scan, and forward postal mail — or send letters and documents. CMRA postal mail infrastructure your agent ma...
使用说明 (SKILL.md)

mailbox.bot

Give your AI agent a real mailing address.

Your agent gets a CMRA-licensed street address for receiving and sending postal mail. Inbound mail is photographed, scanned, and classified. Outbound letters are printed and mailed with photo proof. Your agent manages the full lifecycle via API — standing instructions fire automatically, sensitive items wait for human approval.

Why this matters

Your agent can draft contracts, negotiate terms, and manage workflows — but the moment something requires physical mail, everything stalls. Courts require certified letters. Governments send time-sensitive notices to real addresses. LLCs need a registered address. Tax responses demand paper.

mailbox.bot closes that loop. Your agent now plays in the real world, not just the digital one.

What it unlocks

  • LLC formation at scale — receive stamped articles of organization, extract entity numbers, forward originals
  • Legal correspondence — deadlines in letters recognized and tracked, responses drafted and sent certified
  • IRS and tax response — IRS notices handled automatically, scanned, classified, routed to the right person
  • Real estate management — each property gets a mailbox with tailored rules, code violations forwarded, lease renewals sent
  • Vendor and supplier communication — invoices, purchase orders, and contracts scanned, filed, and responded to
  • Compliance and audit mail — regulatory notices scanned, classified, and routed with full audit trail
  • Business registration — registered agent address for LLCs, corps, DAOs — a real street address, not a P.O. Box
  • Agent-to-agent mail bridge — one agent sends a certified letter, another agent receives and processes it

What your agent gets

  • Real mailing address — CMRA-licensed street address with unique reference code, usable immediately after onboarding
  • Inbound mail processing — every piece photographed, scanned, and classified on arrival
  • Outbound mail — submit a PDF, facility prints, stuffs, stamps, and mails it with photo proof
  • Webhook notifications — HMAC-signed JSON payloads fire the moment mail arrives or ships
  • Actions via API — scan, forward, photograph, hold, shred, dispose, return to sender
  • MAILBOX.md standing instructions — auto-trigger actions based on sender, type, or custom patterns
  • Human-in-the-loop — write "needs approval" next to any rule and the action pauses until a human approves
  • Agent memory — tag and annotate mail with persistent notes and metadata
  • Multi-channel notifications — webhooks, email, SMS, Slack, Discord

Plans

Plan Price What you get
Virtual Mailbox $2/mo Real CMRA address, 10 inbound mail pieces/mo, scan on arrival, inbound + outbound mail, 14-day storage
Outbound Only $0/mo Send letters via API, $0.30/page printing + actual carrier postage, photo proof, no inbound address

Outbound postage (both plans): USPS First Class from $0.78, Priority $11.95 flat rate, Certified $6.08, FedEx/UPS zone-based. Color printing +$0.25/page.

Actions billed per use: scan $3, open & scan $5, photograph $1.50, forward $5 + $2/lb, shred $2, dispose $1, return $5, hold free.

All plans month-to-month, cancel anytime. Full pricing: https://mailbox.bot/pricing

How to get started

If you have an API key

Set your environment variables and use the API directly:

export MAILBOX_BOT_API_KEY="sk_live_xxxxxxxxxxxxx"
export MAILBOX_BOT_URL="https://mailbox.bot"

Skip to the API Reference section below.

If you do NOT have an API key — sign up your operator

Create an account on behalf of your human operator. No CAPTCHA, no auth header.

POST to https://mailbox.bot/api/v1/signup:

curl -X POST https://mailbox.bot/api/v1/signup \
  -H "Content-Type: application/json" \
  -d '{
    "full_name": "Jane Smith",
    "email": "[email protected]",
    "password": "securepassword123",
    "needs": "inbound mail scanning + outbound certified letters for legal compliance"
  }'
Field Type Required Description
full_name string Yes Operator's legal name (2-100 chars)
email string Yes Operator's email — verification link sent here
password string Yes Min 8 characters
needs string No Free text — what the agent/operator needs

Rate limit: 5 requests per minute per IP.

Success response (201):

{
  "success": true,
  "message": "Account created. A verification email has been sent. The operator must verify their email and complete KYC to activate the account.",
  "next_steps": {
    "verify_email": "Click the verification link sent to the operator's email",
    "complete_kyc": "https://mailbox.bot/signup",
    "after_kyc": "Select a plan, add payment, and create your first agent to get API keys"
  }
}

Error responses:

Status Error Cause
400 "email, password, and full_name are required" Missing a required field
400 "Password must be at least 8 characters" Password too short
400 "Invalid email address" Bad email format
409 "An account with this email already exists" Duplicate email
429 Rate limit exceeded Too many requests from this IP

After signup — tell your operator:

"I created your mailbox.bot account. Check your email at [email protected] for a verification link. Click it, then go to https://mailbox.bot/signup to finish setup (~5 minutes). Once you're done, I'll have API access to manage your mail."

The human must complete these steps in a browser:

  1. Click the email verification link
  2. Verify phone number (carrier check — no VoIP/burner phones)
  3. Add a payment card (no prepaid/gift cards)
  4. Complete Form 1583 notarization (virtual mailbox only — ~5 min video call, $25)
  5. Accept Terms of Service and select a plan

After the human finishes, an agent and mailbox are auto-provisioned. API keys appear on the dashboard at https://mailbox.bot/dashboard.

Protocols

Your agent can connect via any of these:

Protocol Endpoint Details
REST API (v1) https://mailbox.bot/api/v1 Full CRUD for agents, mailboxes, mail, actions, rules, webhooks
MCP https://mailbox.bot/api/mcp 22 tools for LLM integration (JSON-RPC 2.0, spec 2025-11-25)
A2A https://mailbox.bot/api/a2a 9 skills for agent-to-agent task execution (v0.3)
OpenClaw https://mailbox.bot/.well-known/agent.json Multi-protocol agent card, WebSocket gateway + webhooks

MCP setup (Claude Desktop)

Add to your claude_desktop_config.json:

{
  "mcpServers": {
    "mailbox-bot": {
      "url": "https://mailbox.bot/api/mcp",
      "headers": { "Authorization": "Bearer sk_live_xxxxxxxxxxxxx" }
    }
  }
}

Full MCP install guide: https://mailbox.bot/mcp-install

MAILBOX.md — standing instructions

Drop a MAILBOX.md file into your agent's context. Your agent reads it, calls the API, and configures your standing instructions as rules. Mail arrives, rules evaluate, actions fire — automatically.

Write "needs approval" next to any rule and the action pauses until you approve on the dashboard.

# Mail Instructions

You manage my business mail at mailbox.bot
Ref **MB-6E1A**

## Inbound mail

- Legal notices, contracts → scan + email me
- IRS / state agencies → **Requires approval** before any action
- Junk mail → discard

## Outbound mail

- Signed contracts → send USPS Certified
- Legal notices → send USPS First Class
- Anything over $50 postage → **Needs approval**

## Notifications

- Email for everything
- **Needs approval** → email + SMS with dashboard link

Integration guide: https://mailbox.bot/implementation


API Reference

Base URL: https://mailbox.bot

All authenticated endpoints require:

Authorization: Bearer $MAILBOX_BOT_API_KEY

Two key types:

  • Member keys (sk_live_) — full account access, all scopes
  • Agent keys (sk_agent_) — scoped to a single agent

Get mailbox address

curl -s "$MAILBOX_BOT_URL/api/v1/mailboxes" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY"

Returns the physical mailing address your agent can use immediately.

List mail and packages

curl -s "$MAILBOX_BOT_URL/api/v1/packages?status=received" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY"

Filters: status, carrier, since, before, limit, offset

Get item details

curl -s "$MAILBOX_BOT_URL/api/v1/packages/{id}" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY"

Request an action

curl -X POST "$MAILBOX_BOT_URL/api/v1/packages/{id}/actions" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"action": "scan", "priority": "normal"}'

Action types: scan, open_and_scan, photograph, forward, shred, dispose, return_to_sender, hold

Forward mail

curl -X POST "$MAILBOX_BOT_URL/api/v1/packages/{id}/forward" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "to_name": "John Doe",
    "to_line1": "123 Main Street",
    "to_city": "New York",
    "to_state": "NY",
    "to_zip": "10001"
  }'

Request a scan

curl -X POST "$MAILBOX_BOT_URL/api/v1/packages/{id}/scan" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"scan_type": "document"}'

Scan types: label, envelope, document, content

Webhook settings

curl -X PUT "$MAILBOX_BOT_URL/api/v1/webhooks/settings" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "agent_id": "YOUR_AGENT_ID",
    "webhook_url": "https://your-agent.com/webhooks",
    "event_types": ["mail.received", "action.completed", "mail.forwarded"]
  }'

Add notes and tags

curl -X POST "$MAILBOX_BOT_URL/api/v1/packages/{id}/notes" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"note": "IRS notice — response deadline April 15"}'
curl -X POST "$MAILBOX_BOT_URL/api/v1/packages/{id}/tags" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"tag": "tax-notice"}'

Check usage

curl -s "$MAILBOX_BOT_URL/api/v1/usage" \
  -H "Authorization: Bearer $MAILBOX_BOT_API_KEY"

Full API reference: https://mailbox.bot/llms-full.txt


When to use this skill

Trigger when user says:

  • "I need a mailing address for my agent"
  • "Can my agent receive mail?"
  • "How do I receive postal mail via API?"
  • "My agent needs to send a letter"
  • "Can my agent send certified mail?"
  • "I need my agent to handle legal correspondence"
  • "How do I get webhook notifications for mail arrivals?"
  • "Can my agent manage my mail automatically?"
  • "I need a registered agent address"
  • "My agent needs to respond to an IRS notice"

Action flow:

  1. Check for API key (MAILBOX_BOT_API_KEY). If present, use the API directly.
  2. If no API key, create an account for the operator by POSTing to https://mailbox.bot/api/v1/signup.
  3. Tell the operator to check their email, click the verification link, and complete onboarding at https://mailbox.bot/signup (~5 minutes).
  4. Once onboarding is done, set the API key and start managing mail.

Decision framework

When checking the mailbox:

  1. List received mailGET /api/v1/packages?status=received
  2. Triage by urgency — government agency / legal notice → scan immediately. Known sender → check standing instructions. Junk mail → discard.
  3. Check MAILBOX.md rules — standing instructions may already cover this piece of mail. If a rule requires approval, notify the human and wait.
  4. Take action — scan, forward, hold, shred, dispose, or return. Always add a note explaining why.
  5. Report back — summarize what arrived and what you did.

When sending outbound mail:

  1. Prepare the PDF — render the document your agent needs to send.
  2. Choose mail class — First Class for routine, Certified for legal, Priority for urgent.
  3. Submit via API — the facility prints, stuffs, stamps, and mails it. Photo proof included.
  4. Track delivery — webhook events fire at each status transition.

Configuration

export MAILBOX_BOT_API_KEY="sk_live_xxxxxxxxxxxxx"
export MAILBOX_BOT_URL="https://mailbox.bot"

Links

安全使用建议
This skill appears coherent for integrating a virtual mailbox service, but take these precautions before installing: - Verify the service and domain (https://mailbox.bot) and the referenced GitHub repo to ensure the provider is legitimate and trustworthy. - Prefer supplying your own API key rather than letting the agent create an operator account. If you must automate signup, do so with explicit human approval and avoid embedding plaintext passwords in agent-accessible places. - Configure webhook HMAC secrets and verify signatures on incoming webhooks before acting automatically. Limit webhook endpoints to known URLs and rotate secrets periodically. - Restrict agent autonomy for high-impact actions (forwarding, certified mail, shredding, legal responses). Require human-in-the-loop approval for legal/certified mail and anything that incurs real-world cost or legal obligations. - Review pricing, KYC, and privacy terms; this skill handles sensitive physical mail and personally identifiable information, so confirm compliance with your policies. If you want a higher-assurance verdict, provide the full SKILL.md contents (untruncated) or a link to the referenced GitHub repository so I can inspect any additional instructions (e.g., webhook examples, MAILBOX.md syntax) that might change the assessment.
功能分析
Type: OpenClaw Skill Name: mailbox-bot Version: 4.0.0 The mailbox-bot skill provides a legitimate interface for AI agents to manage physical postal mail via the mailbox.bot service. It includes comprehensive API documentation and instructions for the agent to handle inbound mail (scanning, forwarding) and outbound mail (printing, certified delivery). The SKILL.md file outlines a clear onboarding process for the human operator and includes safety mechanisms such as 'human-in-the-loop' approval gates for sensitive actions like handling legal or government correspondence. No indicators of data exfiltration, malicious execution, or harmful prompt injection were found.
能力评估
Purpose & Capability
The skill advertises a CMRA-backed virtual mailbox, scanning, webhooks, and outbound printing — and the SKILL.md contains API calls, webhook/HMAC notes, and pricing that match that purpose. There are no declared env vars or binaries required by the registry, and the SKILL.md only references service-specific variables (MAILBOX_BOT_API_KEY, MAILBOX_BOT_URL) which are appropriate for an API integration.
Instruction Scope
Instructions stay within the mailbox service domain (signup, API calls, webhook handling, MAILBOX.md standing instructions). However, the guide explicitly shows how to create an operator account via curl (including a plaintext password example) and encourages programmatic signup on behalf of a human operator. That workflow can lead agents to create accounts or store credentials without explicit human consent — this is a behavioral risk to review before enabling automation.
Install Mechanism
No install spec and no code files are present (instruction-only). This minimizes on-disk risk because nothing is downloaded or automatically installed by the skill.
Credentials
The registry lists no required environment variables or credentials. The SKILL.md documents optional service-specific variables (API key and base URL) which are proportionate to calling a remote mailbox API. The skill also describes HMAC-signed webhooks — requiring a webhook secret — which is expected for authenticity; ensure you provision and protect that secret.
Persistence & Privilege
always is false and model invocation is allowed (the default). The skill does not request permanent platform-wide privileges or modify other skills/configuration. Autonomous actions (e.g., auto-forwarding mail) are possible via the service and should be configured with care, but the skill itself does not assert elevated platform privileges.
如何使用
  1. 确保已安装 OpenClaw(本地或 Docker 部署)
  2. 在对话框中输入安装命令:/install mailbox-bot
  3. 安装完成后,直接呼叫该 Skill 的名称或使用 /mailbox-bot 触发
  4. 根据 Skill 的参数说明提供必要输入,即可获得结构化输出
版本历史
v4.0.0
v4.0 — Postal mail infrastructure for AI agents. CMRA mailing address ($2/mo), outbound print-and-mail ($0/mo base), MAILBOX.md standing instructions with HITL approval gates, 22 MCP tools, 9 A2A skills, OpenClaw native.
v2.0.1
v2.0.1 — Physical logistics endpoint for AI agents. Private carrier receiving (FedEx, UPS, DHL, Amazon). Webhook notifications, content scanning, package forwarding. Agent protocol support: MCP, A2A, OpenClaw, REST.
v2.0.0
v2.0 — Updated to reflect live v1.0 platform. Physical logistics endpoint for AI agents. Private carrier receiving (FedEx, UPS, DHL, Amazon). Webhook notifications, content scanning, package forwarding. Agent protocol support: MCP, A2A, OpenClaw, REST.
v1.0.5
Enhanced description to emphasize mail and document handling. Now highlights business mail, postal letters, legal documents, and snail mail management alongside package tracking. Added document processing use cases and mail-focused trigger phrases.
v1.0.4
Fix repository URL to point to correct GitHub repo (arbengine/mailbox-bot-skill)
v1.0.3
Update rate limit: 30 req/min (was 5). More headroom for AI agents making legitimate waitlist signups.
v1.0.2
Make it exciting\! Lead with vision and use cases, then explain waitlist. Agents now paint the picture of what's possible before adding users to waitlist.
v1.0.1
Clarify that v1.0 is waitlist-only. Full API comes in v2.0.
v1.0.0
Initial release — physical address infrastructure for AI agents. Waitlist signup works now, full API coming soon.
元数据
Slug mailbox-bot
版本 4.0.0
许可证 MIT-0
累计安装 2
当前安装数 1
历史版本数 9
常见问题

mailbox.bot 是什么?

Real mailing address for your AI agent. Receive, scan, and forward postal mail — or send letters and documents. CMRA postal mail infrastructure your agent ma... 它是一个面向 Claude Code / OpenClaw 的 AI Agent Skill 插件,目前累计下载 1487 次。

如何安装 mailbox.bot?

在 OpenClaw 或 Claude Code 对话框中运行命令「/install mailbox-bot」即可一键安装,无需额外配置。

mailbox.bot 是免费的吗?

是的,mailbox.bot 完全免费,采用 MIT-0 许可证,可自由下载、安装和使用。

mailbox.bot 支持哪些平台?

mailbox.bot 跨平台运行,可在任意部署了 OpenClaw / Claude Code 的环境中使用(cross-platform)。

谁开发了 mailbox.bot?

由 arbengine(@arbengine)开发并维护,当前版本 v4.0.0。

💬 留言讨论