Nova App Builder for Openclaw

An end-to-end automation skill for building, deploying, and verifying Trusted Execution Environment (TEE) applications on the Nova Platform.

zfdang
v1.0.0
Feb 28, 2026
0
0
0

Install & Download

1. ClawHub CLI

The fastest way to install a skill directly from the registry.

npx clawhub@latest install nova-builder-clean

2. Manual Installation

Copy the skill folder to one of these locations

Global
~/.openclaw/skills/
Workspace
<project>/skills/

Priority: Workspace > Local > Bundled

3. Prompt Installation

Copy this prompt to OpenClaw to install it automatically.

Help me install nova-builder-clean using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).

Prefer to download?

Get the raw skill files in a ZIP archive.

What is Nova App Builder?

The Nova App Builder skill provides a streamlined workflow for developers to create applications that run within AWS Nitro Enclaves. By utilizing Openclaw Skills, developers can handle complex tasks such as Docker-to-EIF (Enclave Image File) conversion, KMS integration, and secure networking through the Odyn supervisor. This skill ensures that your application logic is protected while providing easy access to cloud-based resources and verifiable execution.

This skill is specifically designed for developers looking to leverage the security of hardware-based enclaves without the traditional overhead of manual enclave management. Through Openclaw Skills, the process of code scaffolding, remote building, and on-chain registration becomes a cohesive, automated experience that bridges the gap between standard cloud development and privacy-preserving computation.

Nova App Builder Use Cases

  • Deploying privacy-focused backend services in AWS Nitro Enclaves to protect sensitive data.
  • Managing secure cryptographic keys and signatures via decentralized KMS within an enclave.
  • Creating verifiable cloud applications with ZK proof registration for public trust.
  • Automating the CI/CD pipeline for TEE deployments using Openclaw Skills.
  • Building dual-chain applications that interact with both Ethereum Mainnet and Base Sepolia.

How Nova App Builder Works

  1. Scaffold the project template using the provided Python scripts to establish the base directory structure.
  2. Implement application routes in Python using the FastAPI framework and the Odyn Internal API.
  3. Push application source code and the Dockerfile to a remote Git repository for automated building.
  4. Configure the app settings on the Nova Platform using the Openclaw Skills interface to define ports and egress rules.
  5. Trigger the remote build process which converts the Docker image into a secure Enclave Image File.
  6. Initiate the deployment to a live instance and verify its health through the platform hostname.
  7. Generate ZK proofs and register the instance on-chain to provide cryptographic proof of code integrity.

Nova App Builder Setup

To get started, ensure you have a Nova account and an API key from sparsity.cloud. You will also need a GitHub repository and a Personal Access Token (PAT) for pushing code.

# Scaffold a new Nova project to your local directory
python3 scripts/scaffold.py --name my-tee-app --desc "Secure App" --port 8080 --out ./workdir

# Install the necessary client for local testing
pip install fastapi httpx uvicorn

Nova App Builder Data Schema & Taxonomy

The skill organizes application data and metadata through the following taxonomy:

Field Description
sqid The unique string identifier for the application and its deployments.
advanced A JSON configuration object containing network egress rules and hardware flags.
PCR Measurements Cryptographic fingerprints (PCR0, PCR1, PCR2, PCR8) generated during the build.
hostname The public URL assigned to the enclave instance after a successful deployment.
onchain_app_id The registry identifier for apps registered on the Base Sepolia network.

Nova App Builder Advanced Features

  • Full lifecycle on-chain registration for trustless verification of running enclave code.
  • Built-in support for Helios light-clients to enable secure multi-chain connectivity directly from the TEE.
  • Automated proxy-aware egress management to facilitate secure external API calls while maintaining enclave isolation.
  • Enclave-native S3 and App Wallet integrations enabled and managed via Openclaw Skills.
  • Zero-Knowledge (ZK) proof generation to link live deployments to specific, audited code versions.

SKILL.md


Loading

Related Openclaw Skills

METADATA

Github Stars: 0
forks: 0

Featured*