nemoclaw-user-manage-policy

Add, remove, or modify allowed endpoints in NemoClaw sandbox network policy.

Updated Apr 16, 2026
One-click install
npx skills add https://github.com/sayalinvidia/sayali-skills-test --skill nemoclaw-user-manage-policy-sayalinvidia
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: nemoclaw-user-manage-policy
Source: https://github.com/sayalinvidia/sayali-skills-test/tree/main/skills/nemoclaw-user-manage-policy
Command: npx skills add https://github.com/sayalinvidia/sayali-skills-test --skill nemoclaw-user-manage-policy-sayalinvidia

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Adds, removes, or modifies allowed endpoints in the sandbox policy. Use when customizing network policy, changing egress rules, or configuring sandbox endpoint access. Trigger keywords - customize nemoclaw network policy, sandbox egress policy configuration, nemoclaw integration policy examples, post-install policy setup, openshell approval workflow, policy preset, nemoclaw approve network requests, sandbox egress approval tui.

Core Features & Use Cases

  • Add, remove, or modify network endpoints within the NemoClaw sandbox policy to enforce least-privilege egress.
  • Apply and manage policy presets during onboarding, or dynamically adjust running policies without restarting sandboxes.
  • Inspect, verify, and audit policy changes using OpenShell and NemoClaw tooling to ensure repeatable, trackable configurations.

Quick Start

Onboard NemoClaw, choose a policy preset, and apply a minimal egress rule to allow the required endpoint.

Frequently Asked Questions about nemoclaw-user-manage-policy

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I configure egress network policy for a sandbox environment?

Sandbox egress network policy is configured by adding, removing, or modifying allowed endpoints within the NemoClaw policy. You can apply static YAML edits during onboarding or dynamically adjust running policies without restarting sandboxes.

Does OpenShell support interactive approval workflows for sandbox network requests?

OpenShell supports interactive approval workflows for sandbox network requests, allowing you to inspect, verify, and audit policy changes. This ensures repeatable and trackable configurations across development, test, and production environments.

What is the best way to enforce least-privilege egress rules for NemoClaw sandboxes?

To enforce least-privilege egress rules, use NemoClaw policy presets to apply a minimal baseline, then add only the specific required network endpoints to the sandbox policy. You can verify these configurations using OpenShell tooling.

Can I dynamically update running sandbox network policies without restarting?

You can dynamically update running sandbox network policies without restarting by modifying allowed endpoints at runtime. NemoClaw supports runtime policy adjustments alongside static YAML edits for OpenShell-enabled sandboxes.

How do I audit and verify sandbox endpoint access changes?

You can audit and verify sandbox endpoint access changes using OpenShell and NemoClaw tooling. This allows you to inspect policy modifications, ensuring that egress rules remain repeatable and trackable across environments.

Are there policy presets available for post-install sandbox network setup?

Policy presets are available for post-install sandbox network setup, allowing you to quickly choose a baseline configuration during NemoClaw onboarding. You can then apply minimal egress rules to allow required endpoints.