NemoClaw v0.0.130 is out! #12563
rsliter
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
NemoClaw v0.0.130
NemoClaw v0.0.130 makes sandbox creation and recovery more predictable. You can onboard OpenClaw or Hermes from a publisher-managed image by immutable digest, and NemoClaw now preserves that image identity through rebuild, resume, and snapshot workflows.
This release also strengthens inference and hardware support. It adds bounded profiles for more DGX and Windows-on-Arm systems, clarifies OpenClaw configuration ownership, improves Hermes recovery, and makes messaging and network-policy failures easier to diagnose safely.
Operational work rounds out the release. Install, uninstall, download, gateway recovery, documentation, skills, and CI now provide stronger evidence and safer failure handling across Docker, Podman, WSL, and managed-image workflows.
Images, sandboxes, and recovery
nemoclaw onboard --from-image <repository>@sha256:<digest>for publisher-managed OpenClaw and Hermes images. NemoClaw validates the image contract before sandbox creation and preserves the recorded digest through resume, rebuild, and snapshot clone.Phase: Error. Deep Agents Code also carries supported managed MCP entries through the bounded recovery handoff.backup-allorrebuildstarts. NemoClaw reserves time to return the sandbox toStoppedand stops before replacement when verification fails.--keep-vllmorNEMOCLAW_KEEP_VLLM=1when you want to retain it.connectorstartcannot find the expected managed container. Operators can resolve each listed owner before retrying.settings.jsonthrough rebuild and snapshot restore while continuing to exclude per-path trust decisions.Inference, hardware, and runtimes
qwen3.6:35bmodel on eligible Station GB300 Windows-on-Arm WSL hosts when every bounded CUDA and capacity check passes.NVIDIA RTX Spark N1X (5120-core Blackwell RTX GPU)identity under the existing WSL, CUDA, Docker Desktop, and capacity requirements./sandbox/.openclaw/openclaw.jsonto OpenClaw after first launch. Rebuild and restore preserve a credential-sanitized copy without reconciling unrelated OpenShell state.inference.local.404from/v1/modelsas a route failure instead of a verified deployment.Security, messaging, and network policy
nemoclaw <sandbox> exec -- .... When a command reports pending approval, use its native request ID in a preparedconnectshell.GOOGLECHAT_SERVICE_ACCOUNT. Interactive entry still requires one-line JSON.brew-balancedpolicy preset. It restrictsraw.githubusercontent.comto GET and HEAD for Homebrew binaries without silently changing existingbrewselections.--refresh-public-pinsupdate path that rejects private and special-use answers.XDG_RUNTIME_DIRduring rootless Podman discovery. This ships the Docker-authority correction originally contributed by @harjothkhara in #10793.strictto v1alpha1hard_requirementduring configuration export, preserving fail-closed enforcement.CLI, installation, and operator diagnostics
CHAT_UI_URLin dashboard, list, and status output.-when the standard outer--separator is present. This ships the path normalization originally contributed by @100milliongold in #11388.reconcileorrollback.130when onboarding is interrupted during agent selection and suppresses the raw prompt error.Skills, documentation, and release confidence
NEMOCLAW_SINGLE_SESSIONreaches the shell that runs the installer.Thank you
Thank you to @Dreamstick9 for the network-policy documentation in #10937, @ericcurtin for the installer example correction in #12477, and @helasaoudi for the historical release-note correction in #11542.
Thank you to @harjothkhara for the original Docker-authority and bounded-download contributions in #10793 and #11354, which shipped through #12348 and #12374. Thank you to @100milliongold for the original leading-hyphen path fix in #11388, which shipped through #12391.
All reactions