NemoClaw — NVIDIA Security Stack for AI Agents

NemoClaw

AI Agent an toàn. Sức mạnh từ NVIDIA.

Một lệnh duy nhất, triển khai toàn bộ bộ bảo mật AI agent. Sandbox OpenShell + suy luận cục bộ Nemotron + Privacy Router — bảo mật cấp doanh nghiệp cho agent OpenClaw.

Bắt đầu nhanh

ALPHA
# One-liner install for NemoClaw secure stack (Ubuntu 22.04+ recommended)
$ curl -fsSL https://www.nvidia.com/nemoclaw.sh | bash

Auto-installs Node.js, OpenShell runtime, and the NemoClaw CLI. Runs nemoclaw onboard after install.

Khả năng chính

shield

Sandbox bảo mật OpenShell

Cách ly AI agent ở cấp kernel. Sandbox dựa trên chính sách, kiểm soát chi tiết hệ thống tệp, mạng và tiến trình.

route

Privacy Router

Chuyển đổi thông minh giữa model Nemotron cục bộ và nhà cung cấp cloud. Dữ liệu nhạy cảm ở lại thiết bị, chỉ truy vấn an toàn mới lên cloud.

memory

Suy luận cục bộ Nemotron

Chạy Nemotron 3 Super 120B MoE ngay trên máy. Không tốn token, không rò rỉ dữ liệu, hoàn toàn offline trên GPU NVIDIA.

security

Bộ máy chính sách mạng

Mặc định chặn toàn bộ kết nối ra ngoài. Mỗi kết nối ngoại vi đều cần quản trị viên phê duyệt. Toàn bộ hoạt động mạng được ghi nhật ký kiểm toán.

devices

Triển khai đa nền tảng

Chạy trên GeForce RTX, RTX PRO, DGX Station, DGX Spark. Từ máy trạm lập trình viên đến trung tâm dữ liệu doanh nghiệp.

terminal

Cài đặt một lệnh

Một lệnh triển khai toàn bộ: OpenShell, Nemotron, Privacy Router và NemoClaw CLI.

Xem trực tiếp

NemoClaw qua video

Xem phát biểu GTC 2026, demo kiến trúc và hướng dẫn triển khai.

menu_book Xem tài liệu đầy đủ arrow_forward

Mọi người nói gì

Xem tất cả arrow_forward
@secops_maria avatar

"Default-deny networking was the killer feature for us. Every outbound request our agents make is logged and requires approval. Exactly what our compliance team needed."

@secops_maria
@devops_mike avatar

"Ran 'nemoclaw onboard' and had a fully sandboxed agent environment in under 5 minutes. OpenShell isolation gives us confidence to deploy AI agents in production."

@devops_mike
@ai_sarah avatar

"The Privacy Router is genius. Customer PII never leaves our infrastructure — only safe, anonymized queries hit the cloud models. Zero code changes from our existing agents."

@ai_sarah
@ciso_tom avatar

"Showed the OpenShell audit logs to our SOC 2 auditor. First time they've seen AI agent activity tracked at this level of detail. Passed with flying colors."

@ciso_tom
@mleng_jenny avatar

"Running Nemotron locally means zero token cost for internal queries. We cut our cloud AI spend by 70% while actually improving data privacy. Win-win."

@mleng_jenny
@platform_raj avatar

"Deployed NemoClaw on DGX Spark and it just works. Auto-detected the hardware, configured optimal model settings. One command to production-ready AI security."

@platform_raj
@secops_maria avatar

"Default-deny networking was the killer feature for us. Every outbound request our agents make is logged and requires approval. Exactly what our compliance team needed."

@secops_maria
@devops_mike avatar

"Ran 'nemoclaw onboard' and had a fully sandboxed agent environment in under 5 minutes. OpenShell isolation gives us confidence to deploy AI agents in production."

@devops_mike
@ai_sarah avatar

"The Privacy Router is genius. Customer PII never leaves our infrastructure — only safe, anonymized queries hit the cloud models. Zero code changes from our existing agents."

@ai_sarah
@ciso_tom avatar

"Showed the OpenShell audit logs to our SOC 2 auditor. First time they've seen AI agent activity tracked at this level of detail. Passed with flying colors."

@ciso_tom
@mleng_jenny avatar

"Running Nemotron locally means zero token cost for internal queries. We cut our cloud AI spend by 70% while actually improving data privacy. Win-win."

@mleng_jenny
@platform_raj avatar

"Deployed NemoClaw on DGX Spark and it just works. Auto-detected the hardware, configured optimal model settings. One command to production-ready AI security."

@platform_raj
@infra_alex avatar

"OpenShell's sandbox isolation caught a rogue agent trying to access /etc/passwd. In production. Without NemoClaw, that would have been a security incident."

@infra_alex
@devsec_lisa avatar

"Blueprints make repeatable secure deployments trivial. Define once, deploy everywhere. Every new agent gets the same security posture automatically."

@devsec_lisa
@security_emma avatar

"The network policy engine is exactly what we needed. Our agents can only reach pre-approved APIs. Everything else is blocked by default. Simple and effective."

@security_emma
@cloud_chris avatar

"Migrated 30 OpenClaw agents to NemoClaw. Zero code changes — just wrapped them in OpenShell sandboxes. Now we have full audit trails for every agent action."

@cloud_chris
@startup_nina avatar

"As a startup handling healthcare data, NemoClaw's Privacy Router was non-negotiable. Patient data stays on our GPUs, period. HIPAA compliance out of the box."

@startup_nina
@backend_kai avatar

"The OpenShell TUI is addictive. Watching agent actions in real-time, seeing network requests get approved or blocked — it's like Wireshark for AI agents."

@backend_kai
@infra_alex avatar

"OpenShell's sandbox isolation caught a rogue agent trying to access /etc/passwd. In production. Without NemoClaw, that would have been a security incident."

@infra_alex
@devsec_lisa avatar

"Blueprints make repeatable secure deployments trivial. Define once, deploy everywhere. Every new agent gets the same security posture automatically."

@devsec_lisa
@security_emma avatar

"The network policy engine is exactly what we needed. Our agents can only reach pre-approved APIs. Everything else is blocked by default. Simple and effective."

@security_emma
@cloud_chris avatar

"Migrated 30 OpenClaw agents to NemoClaw. Zero code changes — just wrapped them in OpenShell sandboxes. Now we have full audit trails for every agent action."

@cloud_chris
@startup_nina avatar

"As a startup handling healthcare data, NemoClaw's Privacy Router was non-negotiable. Patient data stays on our GPUs, period. HIPAA compliance out of the box."

@startup_nina
@backend_kai avatar

"The OpenShell TUI is addictive. Watching agent actions in real-time, seeing network requests get approved or blocked — it's like Wireshark for AI agents."

@backend_kai

Câu hỏi thường gặp

Những câu hỏi hay gặp nhất về NemoClaw.

Theo dõi tin mới

Nhận thông báo phiên bản mới, cảnh báo bảo mật và tin tức hệ sinh thái NemoClaw. Không spam, hủy đăng ký bất cứ lúc nào.