## Release range
- Previous release: `v0.0.112` at `bed2590be34617f75185499e46e584a3a6c39f5e`
- Candidate: `34cad8f2a896efbff8852f92190ad73395d62538`
- Commits: 37
- Risky files detected: 96
## QA context
### Risky areas
- Workflow / enforcement
- Sandbox / policy / SSRF
- Credentials / inference
- Installer / bootstrap
- Onboarding / host glue
### Suggested test focus
- Fresh install and upgrade paths
- Onboarding wizard and sandbox creation
- Policy enforcement, network egress, and SSRF protections
- CI checks, pre-commit hooks, and DCO declarations
- Credential storage and inference provider routing
## Canonical release entry
- Path: `docs/changelog/2026-08-20.mdx`
- Entry:
## v0.0.113
NemoClaw v0.0.113 improves sandbox and onboarding recovery across interactive connections, Hermes, Portable, policy changes, and local adapters.
It adds experimental Hermes Google Chat support while keeping the service-account private key outside the sandbox.
It also changes the Google Gemini default, strengthens managed image publication, and improves E2E diagnostics.
- Interactive `connect` now releases the lifecycle lock before it waits for the shell, so other commands can use the same sandbox during the session.
An explicit sandbox start tolerates a bounded initial OpenShell `Error` phase while the sandbox returns to `Ready`.
Hermes onboarding probes the API port recorded for the sandbox, and onboarding bounds each sandbox readiness observation.
Portable onboarding uses `10.87.0.0/24` for its sandbox network and preserves credential-redacted image-pull diagnostics.
Experimental NemoCUA now uses the standard lifecycle for terminal agents with an operator-prepared sandbox image.
For more information, refer to the [NemoClaw CLI Commands Reference](/user-guide/openclaw/reference/commands) and [Set Up an OpenAI-Compatible Endpoint](/user-guide/openclaw/inference/custom-endpoints/set-up-openai-compatible-endpoint).
Related changes: [PR #9657](https://github.com/NVIDIA/NemoClaw/pull/9657), [PR #9755](https://github.com/NVIDIA/NemoClaw/pull/9755), [PR #9747](https://github.com/NVIDIA/NemoClaw/pull/9747), [PR #9758](https://github.com/NVIDIA/NemoClaw/pull/9758), [PR #9715](https://github.com/NVIDIA/NemoClaw/pull/9715), [PR #9714](https://github.com/NVIDIA/NemoClaw/pull/9714), and [PR #9723](https://github.com/NVIDIA/NemoClaw/pull/9723).
- Policy changes now preserve the authoritative OpenShell exit status and leave rejected or unconfirmed mutations out of NemoClaw state.
The Hermes tool gateway broker refuses a healthy listener unless the recorded live process is the NemoClaw broker.
Shields commands can recover expired timer state, and full uninstall stops verified NemoClaw-owned Bedrock Runtime adapters before it removes their lifecycle evidence.
For more information, refer to [Troubleshooting](/user-guide/openclaw/reference/troubleshooting) and [Uninstall NemoClaw](/user-guide/openclaw/manage-sandboxes/operate-sandboxes/uninstall-nemoclaw).
Related changes: [PR #9238](https://github.com/NVIDIA/NemoClaw/pull/9238), [PR #9593](https://github.com/NVIDIA/NemoClaw/pull/9593), [PR #9749](https://github.com/NVIDIA/NemoClaw/pull/9749), and [PR #9576](https://github.com/NVIDIA/NemoClaw/pull/9576).
- Google Gemini onboarding now offers and defaults to `gemini-3.6-flash` while retaining manual model entry.
Failed Bedrock Runtime adapter startup now removes its process and stale state.
Managed MCP add operations republish the credential-free provider revision after delayed credential absence and require a fresh projected revision before commit.
Regression evidence now requires exactly one credential refresh across concurrent add operations.
Managed llama.cpp publication can create its GitHub Container Registry package during the first platform publish and validates the two-platform candidate against exact platform manifests.
Managed Hermes images include and validate the frozen `agent-client-protocol` package required by the existing `hermes-acp` entry point, but this release does not add an Agent Client Protocol (ACP) session workflow.
For more information, refer to [Use Google Gemini](/user-guide/openclaw/inference/hosted-inference/use-google-gemini) and [Manage MCP Servers](/user-guide/openclaw/manage-sandboxes/mcp-servers/manage-mcp-servers).
Related changes: [PR #9640](https://github.com/NVIDIA/NemoClaw/pull/9640), [PR #9769](https://github.com/NVIDIA/NemoClaw/pull/9769), [PR #9771](https://github.com/NVIDIA/NemoClaw/pull/9771), [PR #9772](https://github.com/NVIDIA/NemoClaw/pull/9772), [PR #9794](https://github.com/NVIDIA/NemoClaw/pull/9794), [PR #9766](https://github.com/NVIDIA/NemoClaw/pull/9766), and [PR #9795](https://github.com/NVIDIA/NemoClaw/pull/9795).
- Experimental Google Chat support now includes Hermes.
Hermes pulls events from a configured Google Cloud Pub/Sub subscription and sends replies through the Google Chat API.
OpenShell keeps the service-account private key outside the sandbox and replaces the in-sandbox credential placeholder at the approved request boundary.
For more information, refer to [Manage Messaging Channels](/user-guide/hermes/manage-sandboxes/messaging-channels/manage-messaging-channels).
Related change: [PR #9393](https://github.com/NVIDIA/NemoClaw/pull/9393).
- E2E support now preserves final-handoff diagnostics, stops scheduling later inference-routing tests after the first failure, and shortens token-rotation coverage without removing its credential checks.
It completes Portable fixture cleanup before it publishes an injected failure record, reports each Launchable provenance mismatch, and retries one exact protected BuildKit transport failure only after the revision tag is confirmed absent.
PR Review Advisor now reports all actionable submission validation errors together so its single repair attempt can address them.
Related changes: [PR #9559](https://github.com/NVIDIA/NemoClaw/pull/9559), [PR #9713](https://github.com/NVIDIA/NemoClaw/pull/9713), [PR #9752](https://github.com/NVIDIA/NemoClaw/pull/9752), [PR #9757](https://github.com/NVIDIA/NemoClaw/pull/9757), [PR #9765](https://github.com/NVIDIA/NemoClaw/pull/9765), and [PR #9767](https://github.com/NVIDIA/NemoClaw/pull/9767).
## Pi documentation evidence
- Pi candidate: `34cad8f2a896efbff8852f92190ad73395d62538`
- Workflow: [Docs / Post-Merge Catch-Up run 32438491844, attempt 1](https://github.com/NVIDIA/NemoClaw/actions/runs/32438491844)
- Publish job: [Publish documentation catch-up](https://github.com/NVIDIA/NemoClaw/actions/runs/32438491844/job/96644918130), successful
- Artifact: `post-merge-docs-approved`
- Review: `{"mainSha":"34cad8f2a896efbff8852f92190ad73395d62538","outcome":"approved","patchSha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","repository":"NVIDIA/NemoClaw","version":1}`
- Managed candidate documentation PR and branch: absent
## Base and managed image evidence
- Base-image candidate: `34cad8f2a896efbff8852f92190ad73395d62538`
- Workflow: [E2E run 32438492164, attempt 1](https://github.com/NVIDIA/NemoClaw/actions/runs/32438492164)
- Job: [base-image-publication](https://github.com/NVIDIA/NemoClaw/actions/runs/32438492164/job/96644329939), successful
## General E2E decision
- Candidate SHA: `34cad8f2a896efbff8852f92190ad73395d62538`
- Newest identifiable full main E2E SHA: `bed2590be34617f75185499e46e584a3a6c39f5e`
- Run: [E2E full main run 32378489657, attempt 2](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/attempts/2)
- Created: `2026-08-20T14:09:57Z`; started: `2026-08-20T21:11:36Z`
- Last updated: `2026-08-20T22:44:13Z`, 11 hours 59 minutes old at inspection on `2026-08-21T02:09:00Z`
- Status: completed; conclusion: failure
- Release qualification: [failed](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96606611897), started `2026-08-20T22:43:35Z`, completed `2026-08-20T22:43:44Z`
- Failed jobs: [openshell-credential-generation-window](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583887116), [mcp-bridge for Deep Agents](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583887165), [mcp-bridge for Hermes](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583887205), [mcp-bridge for OpenClaw](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583887271), [messaging-providers](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583887442), [Exact staging Brev Launchable](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890229), [Brave search result and key isolation](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890665), [balanced egress](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890739), [Hermes Discord rebuild](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890883), [Hermes Slack credential isolation](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890884), [OpenClaw Discord pairing](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583890927), [OpenClaw Slack pairing](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583891240), [Shields restore](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583891548), [v0.0.89 upgrade](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583891808), and [Release qualification](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96606611897).
- Skipped jobs: [native-runtime qualification producer plan](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583888376), [protected llama.cpp DGX Spark plan](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583888383), [retired-selector compatibility](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583888449), [Jetson nvmap GPU](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583888632), [protected llama.cpp on DGX Spark](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583894242), [pinned native Podman toolchain](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583894292), [matrix job](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583899900), [aggregate native-runtime qualification](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96583903345), and [Relevant E2E](https://github.com/NVIDIA/NemoClaw/actions/runs/32378489657/job/96606612673).
- Requested reruns: none
- Maintainer choice: proceed with the status shown.
Exceptions: The newest identifiable full main E2E tested `bed2590be34617f75185499e46e584a3a6c39f5e`, not the release candidate, and had the accepted morning E2E failures listed above. Rebecca Sliter directed the release to proceed without another full run because those failures are accepted for this cut, while the candidate's separate required documentation and base-image publication gates passed.