Skip to content

Add Shrike action governance recipe (nemoclaw-community partner catalog) - #6

Open
Habirua wants to merge 1 commit into
VoltAgent:mainfrom
Habirua:add-shrike-action-governance-recipe
Open

Add Shrike action governance recipe (nemoclaw-community partner catalog)#6
Habirua wants to merge 1 commit into
VoltAgent:mainfrom
Habirua:add-shrike-action-governance-recipe

Conversation

@Habirua

@Habirua Habirua commented Sep 3, 2026

Copy link
Copy Markdown

Adds the Shrike action-governance recipe under Agent Recipes.

It is a partner recipe in NVIDIA's nemoclaw-community catalog (merged after maintainer security review): an in-sandbox before_tool_call plugin that evaluates each tool call — shell commands, SQL, file writes, web requests — against server-side policy before execution, returning allow / warn / require_approval / block. OpenShell contains where the agent can act; this governs what a specific action is. The recipe README is explicit that it is defense-in-depth inside the sandbox, not an independent security boundary — the OpenShell egress policy and credential provider remain the independent controls.

Tested against the published recipe as merged; setup and requirements are in the recipe README.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant