NemoClaw — NVIDIA Security Stack for AI Agents

NemoClaw

Veilige AI-agents. Door NVIDIA.

Eén commando voor een volledige, beveiligde AI-agentstack. OpenShell-sandbox + lokale Nemotron-inferentie + Privacy Router — enterprise-beveiliging voor OpenClaw-agents.

Snel starten

ALPHA
# One-liner install for NemoClaw secure stack (Ubuntu 22.04+ recommended)
$ curl -fsSL https://www.nvidia.com/nemoclaw.sh | bash

Auto-installs Node.js, OpenShell runtime, and the NemoClaw CLI. Runs nemoclaw onboard after install.

Kernmogelijkheden

shield

OpenShell Secure Sandbox

Kernelniveau-isolatie voor AI-agents. Beleidsgestuurde sandboxes met fijnmazige controle over bestandssysteem, netwerk en processen.

route

Privacy Router

Intelligent schakelen tussen lokale Nemotron-modellen en cloudproviders. Gevoelige data blijft lokaal — alleen veilige verzoeken gaan naar de cloud.

memory

Lokale Nemotron-inferentie

Draai Nemotron 3 Super 120B MoE lokaal. Geen tokenkosten, geen datalekken, volledig offline op NVIDIA GPU's.

security

Netwerkbeleid-engine

Uitgaand verkeer standaard volledig geblokkeerd. Elke externe verbinding vereist operatorgoedkeuring. Volledige auditlog van alle netwerkactiviteit.

devices

Multiplatform deployment

Draait op GeForce RTX, RTX PRO, DGX Station en DGX Spark. Van ontwikkelaarswerkplek tot enterprise-datacenter.

terminal

Installatie met één commando

Eén commando deployt de volledige beveiligingsstack: OpenShell, Nemotron, Privacy Router en NemoClaw CLI.

Bekijk het in actie

NemoClaw in beeld

GTC 2026-aankondiging, architectuurdemo's en deploymentwalkthroughs.

menu_book Volledige documentatie bekijken arrow_forward

Wat anderen zeggen

Alles bekijken arrow_forward
@secops_maria avatar

"Default-deny networking was the killer feature for us. Every outbound request our agents make is logged and requires approval. Exactly what our compliance team needed."

@secops_maria
@devops_mike avatar

"Ran 'nemoclaw onboard' and had a fully sandboxed agent environment in under 5 minutes. OpenShell isolation gives us confidence to deploy AI agents in production."

@devops_mike
@ai_sarah avatar

"The Privacy Router is genius. Customer PII never leaves our infrastructure — only safe, anonymized queries hit the cloud models. Zero code changes from our existing agents."

@ai_sarah
@ciso_tom avatar

"Showed the OpenShell audit logs to our SOC 2 auditor. First time they've seen AI agent activity tracked at this level of detail. Passed with flying colors."

@ciso_tom
@mleng_jenny avatar

"Running Nemotron locally means zero token cost for internal queries. We cut our cloud AI spend by 70% while actually improving data privacy. Win-win."

@mleng_jenny
@platform_raj avatar

"Deployed NemoClaw on DGX Spark and it just works. Auto-detected the hardware, configured optimal model settings. One command to production-ready AI security."

@platform_raj
@secops_maria avatar

"Default-deny networking was the killer feature for us. Every outbound request our agents make is logged and requires approval. Exactly what our compliance team needed."

@secops_maria
@devops_mike avatar

"Ran 'nemoclaw onboard' and had a fully sandboxed agent environment in under 5 minutes. OpenShell isolation gives us confidence to deploy AI agents in production."

@devops_mike
@ai_sarah avatar

"The Privacy Router is genius. Customer PII never leaves our infrastructure — only safe, anonymized queries hit the cloud models. Zero code changes from our existing agents."

@ai_sarah
@ciso_tom avatar

"Showed the OpenShell audit logs to our SOC 2 auditor. First time they've seen AI agent activity tracked at this level of detail. Passed with flying colors."

@ciso_tom
@mleng_jenny avatar

"Running Nemotron locally means zero token cost for internal queries. We cut our cloud AI spend by 70% while actually improving data privacy. Win-win."

@mleng_jenny
@platform_raj avatar

"Deployed NemoClaw on DGX Spark and it just works. Auto-detected the hardware, configured optimal model settings. One command to production-ready AI security."

@platform_raj
@infra_alex avatar

"OpenShell's sandbox isolation caught a rogue agent trying to access /etc/passwd. In production. Without NemoClaw, that would have been a security incident."

@infra_alex
@devsec_lisa avatar

"Blueprints make repeatable secure deployments trivial. Define once, deploy everywhere. Every new agent gets the same security posture automatically."

@devsec_lisa
@security_emma avatar

"The network policy engine is exactly what we needed. Our agents can only reach pre-approved APIs. Everything else is blocked by default. Simple and effective."

@security_emma
@cloud_chris avatar

"Migrated 30 OpenClaw agents to NemoClaw. Zero code changes — just wrapped them in OpenShell sandboxes. Now we have full audit trails for every agent action."

@cloud_chris
@startup_nina avatar

"As a startup handling healthcare data, NemoClaw's Privacy Router was non-negotiable. Patient data stays on our GPUs, period. HIPAA compliance out of the box."

@startup_nina
@backend_kai avatar

"The OpenShell TUI is addictive. Watching agent actions in real-time, seeing network requests get approved or blocked — it's like Wireshark for AI agents."

@backend_kai
@infra_alex avatar

"OpenShell's sandbox isolation caught a rogue agent trying to access /etc/passwd. In production. Without NemoClaw, that would have been a security incident."

@infra_alex
@devsec_lisa avatar

"Blueprints make repeatable secure deployments trivial. Define once, deploy everywhere. Every new agent gets the same security posture automatically."

@devsec_lisa
@security_emma avatar

"The network policy engine is exactly what we needed. Our agents can only reach pre-approved APIs. Everything else is blocked by default. Simple and effective."

@security_emma
@cloud_chris avatar

"Migrated 30 OpenClaw agents to NemoClaw. Zero code changes — just wrapped them in OpenShell sandboxes. Now we have full audit trails for every agent action."

@cloud_chris
@startup_nina avatar

"As a startup handling healthcare data, NemoClaw's Privacy Router was non-negotiable. Patient data stays on our GPUs, period. HIPAA compliance out of the box."

@startup_nina
@backend_kai avatar

"The OpenShell TUI is addictive. Watching agent actions in real-time, seeing network requests get approved or blocked — it's like Wireshark for AI agents."

@backend_kai

Veelgestelde vragen

De meestgestelde vragen over NemoClaw — met antwoorden.

Op de hoogte blijven

Ontvang updates over NemoClaw-releases, beveiligingsadviezen en ecosysteemnieuws. Geen spam, altijd opzegbaar.