7 ms·
NanoClaw moved from Apple Containers to Docker
- benatkin 7mo agoSo they're making it use OCI images? Cool. Hopefully there will be good support for Podman.
- funkaster 7mo agoapple containers also run on OCI images: https://github.com/apple/container?tab=readme-ov-file#container https://github.com/apple/container?tab=readme-ov-file#contai... > The tool consumes and produces OCI-compatible container images...
- deleted 7mo ago[deleted]
- botusaurus 7mo ago> But NanoClaw isn't just my personal project anymore. Thousands of people are using it. People are running production workloads on it. Businesses are building on it. There's a real community now. as OpenClaw and now NanoClaw became "enterprise", now we need a new FemtoClaw to pick up the indie/boutique place
- Tt6000 7mo agoHow is this "becoming enterprise"? If anything it now defaults to millions of Linux users being able to access it
- arcanemachiner 7mo agoWell, there was Picoclaw, but I think it was renamed to Clawlet.
- andai 7mo agoHow's 100 lines? :) https://github.com/a-n-d-a-i/ULTRON/blob/main/src/index.ts https://github.com/a-n-d-a-i/ULTRON/blob/main/src/index.ts
- Someone 7mo agoCould also make the other part ‘smaller’ and use nail, hoof or dewclaw (https://en.wikipedia.org/wiki/Dewclaw https://en.wikipedia.org/wiki/Dewclaw)
- deleted 7mo ago[deleted]
- daemonologist 7mo agoI'm sure whatever LLM FemtoClaw calls out to will also write a blurb about its growing adoption in production enterprise applications. This sentiment is probably very well represented in the training data.
- Rapzid 7mo agoMicroClaw.. No fear of it becoming corporate LOL.
- wat10000 7mo agoWe need to go the other direction. GigaClaw eats $100,000/month in tokens and requires a Threadripper with 256GB of RAM on a gigabit connection just to handle the orchestration.
- amelius 7mo agoPutting these NanoClowns inside a container will not protect you from all kinds of safety hazards.
- arcanemachiner 7mo agoWearing a seatbelt will not protect you from all kinds of car accidents.
- amelius 7mo agoYes. That's why you don't put a Clown behind the steering wheel.
- bdcravens 7mo agoTesla Robotaxi says hold my beer
- weinzierl 7mo agoIt is more like getting in the car with Stuntman Mike. The risk is not that the driver might make a mistake but that it actively turns against you and a container is not a security boundary against an adversary.
- snuxoll 7mo ago"Because it was a 50-50 shot on whether you'd be going left or right [...]" Yeah, that about sums up how terrifying it is to give these agents so much access to things.
- InsideOutSanta 7mo agoWearing a helmet will not protect you from all injuries caused by jumping off a cliff. Point is, don't jump off a cliff.
- troupo 7mo ago
- stavros 7mo agoFor my version of the AI assistant, I used a Docker container and Unix permissions: https://github.com/skorokithakis/stavrobot https://github.com/skorokithakis/stavrobot All plugins run in one Docker container, but they're isolated from each other by different *nix users, so they can't read each other's files. That's much more lightweight, and you don't have to run one container per plugin. Crucially, plugins can't read each other's secrets or modify each other's code. I even have a plugin configuration webpage that doesn't go through an LLM, so the LLM never sees your secrets if you don't want to.
- foo42 7mo agoI've been taking a similar approach with my own exploration.
- deleted 7mo ago[deleted]
- brcmthrowaway 7mo agoCan someone explain the special sauce of the claws compared to just use claude.ai etc
- stavros 7mo agoThey're "always" running, so they can notify you out of the blue, without you having to initiate a conversation. It's really nice UX to get a message from my assistant saying "hey, it's time to leave for the gym, and don't forget the supermarket bag because you're picking up milk on the way back, as you've run out".
- dimitri-vs 7mo agoHow would it know you've ran out of milk?
- stavros 7mo agoI told it when I noticed. I made a little pendant with a mic I can speak into and it goes to the bot.
- LeafItAlone 7mo agoI would love to hear more about this!
- stavros 7mo agoI haven't written it up yet but the repo is here: It's just a MEMS mic, a battery, and an ESP32, very simple but it works amazingly well. I wrote a companion Android app for it and it works extremely reliably!
- liminal-dev 7mo agoAre you running NanoClaw or a different project?
- john_alan 7mo agoUse containerd , Docker is cancer.
- ericbuildsio 7mo agoSensible, this broadens our hosting options.
- Xx_crazy420_xX 7mo agoI can't believe the solution is creating uncompatibile branch and forcing users to use cladue for resolving merge conflits. Why not bake in the dual compatibility?
- gre 7mo agoapple container is really buggy with networking
- Y-bar 7mo agoThat’s not the fault of containers, I have significant Bluetooth and WiFi issues on my apple devices without running any containers.
- pach_1 7mo agoyeah i see it too i have openvpn on mac as host and container couldnt access to inet until i disconnect vpn on mac but point is to have different connections
- pach_1 7mo agono there was problem from my side :D
- arsalanb 7mo agoI'm surprised that the developer experience around sandboxing on macOS is generally so bad. Seatbelt is in limbo and apple containers are just a pain to work with as some have highlighted in this thread
- ed_mercer 7mo agoIs there any developer experience on Apple products that isn’t bad?
- einarfd 7mo agoI’ve been building sandboxing for Claude code workloads. So I can let it run wild without breaking my computer. Originally I used docker, but I’m now in the process of jettisoning that, and switching to qemu. For my use case I want ssh access and being able to use docker in docker. This allows for things like test containers and docker compose. You can get all of that working with docker. But you kind of have to fight docker the whole way. NanoClaw might have different needs, and docker could work better for it, and I hope so for their sake. But I’m not optimistic.
- sergiotapia 7mo agoI installed nanoclaw last night funny to see it here on HN. It was easy to install it, and get it running. I could @Andy message it on whatsapp but after that it fell apart fast. I asked it to login to Facebook and check my notifications, and it started saving credentials and random things in the repo as json files. And din't work. It was hard to even figure out what was happening and why it didn't work. Then I tried messaging it again and it didn't respond to me. These things are extremely brittle despite the enourmous amount of github stars. I think it's just normies starring things trying to get on the train unfortunately. The promise of an AI Jarvis is unrealized still.
- _pdp_ 7mo agoYou don't need to use OpenClaw, NanoClaw or any of these new variants. You can literally use Codex, Claude Code, Gemini, OpenCode for the same thing. The only thing that it is missing from all of them is the communication channels because none of them come with native communication tools like OpenClaw. But this is not such a big deal. I made an open-source lightweight daemon in Go that fills that gap. All it does is to provide the means to connect to popular messaging systems like Slack, Discord, WhatsApp, Telegram, etc. and expose this all through the CLI. The project is hosted here: https://github.com/pantalk/pantalk https://github.com/pantalk/pantalk My personal realisation recently has been that the unix way is the best way. We just need to go back creating daemons and lightweight composable CLIs and let agents do their thing. They are increasing being trained to operate the command-line and they are getting pretty good at it.
- qudat 7mo agoI’ve been using happy cli, works great
- splatzone 7mo agoWhat about heartbeats, cron etc? Seems like a major part of the 'claw' appeal is that it can work autonomously, monitor your email inbox for stuff and take action automatically...
- _pdp_ 7mo agoYou can do both with the cron daemon. But pantalk can also trigger the agent after some notifications are buffered too. So that also is a trigger. You don't really need one massive library. All operating systems have native ways to do all of these things and more. I don't know. You can even use systemd if you like.
- zackify 7mo agoHahaha a year ago I did this. Crontab -e Run Claude -p and Claude already has mcp,'s configured so it can do anything I wanted.
- villgax 7mo agoLol production use case for apple containers on what cloud
- nsonha 7mo agoTBH I'm not sure why there is a whole debacle around security with openclaw (obviously you should run it in a sandbox) and if it makes sense for these bots to tackle sandboxing themselves. Now I have to trust their sanboxing vibe code? If not, then I have to run them in another sandbox and deal with nested virtualization.
- JohnMatthias 7mo ago[flagged]
- avaer 7mo agoIronically, the whole "claw" thing reminds me of the time everyone was scrambling to get on the container orchestration bandwangon.
- seertaak 7mo agoIf you use Arch Linux, there's now an AUR package to install it -- made by yours truly. https://aur.archlinux.org/packages/nanoclaw-git https://aur.archlinux.org/packages/nanoclaw-git