nddev-grok-build-app
Portable setup manager for the current xAI Grok Build terminal agent.
This module manages an explicit, absolute Grok Build home. It never defaults to live ~/.grok, never invokes live Grok Build during setup/profile switching, and preserves unmanaged state in the target.
Commands
Use cli-tools/nddevgrokbuild.py --help for the current command surface. Commands that mutate or inspect managed state require an explicit absolute target. update refreshes the currently installed setup/profile identity from the module sources; update-cli refreshes target-owned Grok Build software.
install-cli, update-cli, and remove-cli manage target-owned Grok Build without touching setup, auth, or unrelated target state. Install and update use verified official npm tarballs for the umbrella package and selected native package. Package scripts are not run; the official installer is retained only as source metadata. The current version, package integrity, installer observation, and materialization bounds are code-owned in build/version.json, references/grok-build-baseline.json, and cli-tools/nddevgrokbuild.py. All target-bound setup, software, status, plan, restore, remove, and launch commands reject unsupported hosts before target resolution or runtime side effects. Product runtime management is scoped to macOS and Ubuntu hosts.
aistp provider protocol
The public manager implements provider protocol v3 through provider-info, validate-bundle, plan-operation, and apply-operation. Prepared and component-composed setups therefore converge on the same exact HarnessBundle, pure plan, confirmation digest, target-lock revalidation, native projection, status, backup, restore, and ownership-scoped removal path. Provider state binds the exact setup passport, ordered component references, bundle and artifact, provider release, approved plan, target identity, and projected native files.
Grok-native standalone software and launch commands remain separate capabilities. The bundle path accepts only the component kinds and native namespaces declared by provider-info; unsupported paths fail before planning or target mutation.
Setup And Profiles
The content setup is nddev-builder. It enables maximum documented builder capabilities inside the isolated managed GROKHOME: memory, subagents, web fetch, LSP tools, file writes, tool search, native skills, native plugins, and a target-local Grok marketplace. It also disables Grok config auto-update and envrc loading for the pinned runtime.
Permission profiles are orthogonal:
- full-auto: native always-approve, sandbox off, no managed permission
deny rules.
- safe: native ask, sandbox strict.
Legacy schema-1 setup ids safe, balanced, and full-auto are readable for status, migration, restore, and removal only. Legacy state is never launchable.
Builder Toolkit
The public NDDev Builder toolkit lives under builder/nddev-builder/plugins/nddev-builder. The manager projects the full regular-file toolkit into: