nemoclaw-user-configure-security

Document NemoClaw security controls and credential storage risks.

22.1k|3.0k|Updated Mar 15, 2026
One-click install
npx skills add https://github.com/NVIDIA/NemoClaw --skill nemoclaw-user-configure-security
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: nemoclaw-user-configure-security
Source: https://github.com/NVIDIA/NemoClaw/tree/main/.agents/skills/nemoclaw-user-configure-security
Command: npx skills add https://github.com/NVIDIA/NemoClaw --skill nemoclaw-user-configure-security

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Presents a risk framework for NemoClaw's configurable security controls to help evaluate security posture and advise on credential handling.

Core Features & Use Cases

  • Documents NemoClaw's credential storage and security boundaries.
  • Explains OpenShell integration and sandbox controls.
  • Provides recommendations for securing stored API keys and handling sensitive credentials.

Quick Start

Review NemoClaw's credential storage and security controls to begin assessing your deployment's risk posture.

Frequently Asked Questions about nemoclaw-user-configure-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How does NemoClaw handle credential storage and security boundaries with OpenShell?

NemoClaw stores provider credentials using configurable security boundaries with OpenShell, evaluating operational trade-offs of plaintext local storage and file permissions to help secure stored API keys.

What is the best way to assess NemoClaw security posture for sandbox defaults and tool access control?

Assess NemoClaw security posture by applying a comprehensive risk framework to sandbox defaults, tool access control, and environment variable policy. This framework evaluates operational trade-offs to advise on credential handling.

How do I secure stored API keys when using NemoClaw plaintext local storage?

Review NemoClaw's risk framework to secure stored API keys against plaintext local storage vulnerabilities by evaluating file permissions, environment variable policy, and credential storage security boundaries.

Does NemoClaw include controls for prompt injection detection and rate limiting?

Yes, NemoClaw includes configurable security controls for prompt injection detection and rate limiting. The risk framework evaluates these alongside supply chain scanning and safe regex to assess overall security posture.

What are the limitations of relying on NemoClaw sandbox defaults for sensitive credentials?

Relying on NemoClaw sandbox defaults for sensitive credentials introduces operational trade-offs with plaintext local storage. The risk framework advises evaluating file permissions and environment variable policy to mitigate exposure.

When do I need to audit NemoClaw messaging access policy and context visibility?

You need to audit NemoClaw messaging access policy and context visibility when assessing your deployment's security posture. The risk framework specifies these controls alongside supply chain scanning to evaluate credential handling risks.