mirror of
https://github.com/OpenRouterTeam/spawn.git
synced 2026-05-05 23:50:48 +00:00
- Add trap 'rm -f "${ENV_TEMP}"' EXIT after mktemp creation
- Scripts with DOTENV_TEMP get combined trap for both files
- Remove manual rm calls that are now redundant
- Prevents temp file leaks on early script exit (errors, signals)
- Affects 67 agent scripts across all providers
Impact: Prevents /tmp pollution in production deployments
Score: 90 (Impact: 9, Confidence: 10, Risk: 1)
81 lines
2.4 KiB
Bash
Executable file
81 lines
2.4 KiB
Bash
Executable file
#!/bin/bash
|
|
set -eo pipefail
|
|
|
|
# Source common functions - try local file first, fall back to remote
|
|
SCRIPT_DIR="$(cd "$(dirname "${BASH_SOURCE[0]}")" 2>/dev/null && pwd)"
|
|
# shellcheck source=gcp/lib/common.sh
|
|
if [[ -f "${SCRIPT_DIR}/lib/common.sh" ]]; then
|
|
source "${SCRIPT_DIR}/lib/common.sh"
|
|
else
|
|
eval "$(curl -fsSL https://raw.githubusercontent.com/OpenRouterTeam/spawn/main/gcp/lib/common.sh)"
|
|
fi
|
|
|
|
log_info "NanoClaw on GCP Compute Engine"
|
|
echo ""
|
|
|
|
# 1. Ensure gcloud is configured
|
|
ensure_gcloud
|
|
|
|
# 2. Generate + register SSH key
|
|
ensure_ssh_key
|
|
|
|
# 3. Get server name and create server
|
|
SERVER_NAME=$(get_server_name)
|
|
create_server "${SERVER_NAME}"
|
|
|
|
# 4. Wait for SSH and cloud-init
|
|
verify_server_connectivity "${GCP_SERVER_IP}"
|
|
wait_for_cloud_init "${GCP_SERVER_IP}" 60
|
|
|
|
# 5. Install Node.js deps and clone nanoclaw
|
|
log_warn "Installing tsx..."
|
|
run_server "${GCP_SERVER_IP}" "source ~/.bashrc && bun install -g tsx"
|
|
|
|
log_warn "Cloning and building nanoclaw..."
|
|
run_server "${GCP_SERVER_IP}" "git clone https://github.com/gavrielc/nanoclaw.git ~/nanoclaw && cd ~/nanoclaw && npm install && npm run build"
|
|
log_info "NanoClaw installed"
|
|
|
|
# 6. Get OpenRouter API key
|
|
echo ""
|
|
if [[ -n "${OPENROUTER_API_KEY:-}" ]]; then
|
|
log_info "Using OpenRouter API key from environment"
|
|
else
|
|
OPENROUTER_API_KEY=$(get_openrouter_api_key_oauth 5180)
|
|
fi
|
|
|
|
# 7. Inject environment variables into ~/.zshrc
|
|
log_warn "Setting up environment variables..."
|
|
|
|
ENV_TEMP=$(mktemp)
|
|
trap 'rm -f "${ENV_TEMP}" "${DOTENV_TEMP}"' EXIT
|
|
cat > "${ENV_TEMP}" << EOF
|
|
|
|
# [spawn:env]
|
|
export OPENROUTER_API_KEY="${OPENROUTER_API_KEY}"
|
|
export ANTHROPIC_API_KEY="${OPENROUTER_API_KEY}"
|
|
export ANTHROPIC_BASE_URL="https://openrouter.ai/api"
|
|
EOF
|
|
|
|
upload_file "${GCP_SERVER_IP}" "${ENV_TEMP}" "/tmp/env_config"
|
|
run_server "${GCP_SERVER_IP}" "cat /tmp/env_config >> ~/.zshrc && rm /tmp/env_config"
|
|
|
|
# 8. Create nanoclaw .env file
|
|
log_warn "Configuring nanoclaw..."
|
|
|
|
DOTENV_TEMP=$(mktemp)
|
|
cat > "${DOTENV_TEMP}" << EOF
|
|
ANTHROPIC_API_KEY=${OPENROUTER_API_KEY}
|
|
EOF
|
|
|
|
upload_file "${GCP_SERVER_IP}" "${DOTENV_TEMP}" "${HOME}/nanoclaw/.env"
|
|
|
|
echo ""
|
|
log_info "GCP instance setup completed successfully!"
|
|
log_info "Instance: ${GCP_INSTANCE_NAME_ACTUAL} (Zone: ${GCP_ZONE}, IP: ${GCP_SERVER_IP})"
|
|
echo ""
|
|
|
|
# 9. Start nanoclaw
|
|
log_warn "Starting nanoclaw..."
|
|
log_warn "You will need to scan a WhatsApp QR code to authenticate."
|
|
echo ""
|
|
interactive_session "${GCP_SERVER_IP}" "cd ~/nanoclaw && source ~/.zshrc && npm run dev"
|