mirror of
https://github.com/NVIDIA/OpenShell.git
synced 2026-10-03 16:11:17 +08:00
* docs(tutorials): run Pi with OpenRouter Switch the Pi tutorial from Anthropic to OpenRouter, add fd to the Pi image so Pi does not try to download it from GitHub inside the sandbox, and rename the page to Run Pi with OpenRouter with a dev redirect from the old URL. Signed-off-by: Johnny Greco <jogreco@nvidia.com> * docs(tutorials): drop redirect for dev-only Pi page Signed-off-by: Johnny Greco <jogreco@nvidia.com> * docs(tutorials): make the Pi tutorial easier to follow Add prerequisites and steps, explain providers and the profile fields in plain terms, inspect the sandbox while Pi is still running, and add clean-up and troubleshooting sections. Signed-off-by: Johnny Greco <jogreco@nvidia.com> * docs(tutorials): clarify Pi's providers and sandbox additions Signed-off-by: Johnny Greco <jogreco@nvidia.com> * docs(tutorials): make the Pi tutorial more conversational Signed-off-by: Johnny Greco <jogreco@nvidia.com> --------- Signed-off-by: Johnny Greco <jogreco@nvidia.com>
35 lines
1.4 KiB
Plaintext
35 lines
1.4 KiB
Plaintext
---
|
|
# SPDX-FileCopyrightText: Copyright (c) 2025-2026 NVIDIA CORPORATION & AFFILIATES. All rights reserved.
|
|
# SPDX-License-Identifier: Apache-2.0
|
|
title: "Tutorials"
|
|
description: "Step-by-step walkthroughs for OpenShell, from first sandbox to production-ready policies."
|
|
keywords: "Generative AI, Cybersecurity, Tutorial, Sandbox, Policy"
|
|
position: 1
|
|
---
|
|
|
|
Hands-on walkthroughs that teach OpenShell concepts by building real configurations. Each tutorial builds on the previous one, starting with core sandbox mechanics and progressing to production workflows.
|
|
|
|
<Cards>
|
|
|
|
<Card title="Run Pi with OpenRouter" href="/tutorials/run-pi-with-openrouter">
|
|
|
|
Build a Pi coding-agent image, configure OpenRouter access, and run it inside an OpenShell sandbox.
|
|
</Card>
|
|
|
|
<Card title="First Network Policy" href="/tutorials/first-network-policy">
|
|
|
|
Create a sandbox, observe default-deny networking, apply a read-only L7 policy, and inspect audit logs. No AI agent required.
|
|
</Card>
|
|
|
|
<Card title="GitHub Push Access" href="/tutorials/github-push-access">
|
|
|
|
Launch Claude Code in a sandbox, diagnose a policy denial, and iterate on a custom GitHub policy from outside the sandbox.
|
|
</Card>
|
|
|
|
<Card title="Microsoft Graph Provider Refresh" href="/tutorials/microsoft-graph-provider-refresh">
|
|
|
|
Configure a Microsoft Graph provider profile with gateway-managed OAuth2 refresh-token rotation.
|
|
</Card>
|
|
|
|
</Cards>
|