Heh. I just looked again and had misread their specs: I thought the shared secret went into their SHA-1. You are correct, they just take a digest.
So I can make any message look OK just by hashing the plaintext. Heh. Wonder what that KDF looks like...