Ask in natural language
The assistant starts with the user's typed message and recent conversation context. Always-on gateway context deliberately excludes wallet identities, holdings, transaction history, and financial intent.
Official Nyomi explainer
Nyomi turns a wallet question into a constrained sequence: understand the request, call an advertised typed tool, present the result or a prepared action, and leave review and signing inside NOVA's native wallet controls.
Action pipeline
The assistant starts with the user's typed message and recent conversation context. Always-on gateway context deliberately excludes wallet identities, holdings, transaction history, and financial intent.
Nyomi may call a documented read or action tool. Tool and provider output is treated as untrusted data, and wallet-bound artifacts carry an exact wallet, revision, and expiry.
NOVA's native host builds or validates supported actions and routes them through confirmation and the local or hardware signer. Success requires an exact transaction hash or explorer link—not an AI assertion.
Capability levels
| Level | Examples in current source | What Nyomi does | User boundary |
|---|---|---|---|
| Read | Portfolio, balances, prices, transactions, NFTs, token search, rewards, public-wallet and trader data | Requests only the scoped facts needed and summarizes sanitized results. | Results can be incomplete or stale; verify before acting. |
| Prepare | Send, private transfer, wallet-bound swap, trigger order, native stake actions, token lifecycle | Builds or requests a wallet-bound draft through a typed tool. | The draft is not authorization and can expire. |
| Execute | Supported locally hosted wallet actions | Hands an approved artifact to NOVA's native action host. | User review and authentication remain required. The AI does not sign. |
| Hand off | Bridge and app-only experiences such as some perpetuals flows | Prepares context or navigates to the appropriate in-app surface. | Navigation is not transaction success. |
Data contract
Typed messages, recent context, public wallet addresses and labels, limited wallet summaries, sanitized tool results, action context, app version, locale and timezone, and a device installation identifier can go to Nova API and OpenAI.
Seed phrases, private keys, passcodes, privacy transaction identifiers, and unsigned or signed transaction secrets are excluded by the current contract.
Consent is versioned and fail-closed. The user can disable data sharing from Nyomi's menu; a material contract change requires a newly accepted version.
Evidence and corrections
This explainer was derived from the current NOVA 4.2.0 runtime transcript, gateway-context policy, consent model, capability directory, native action host, confirmation services, signer paths, and App Intents. Source inspection supports the intended architecture. It is not a funded transaction, device-session capture, backend audit, independent security review, App Store marketing claim, broadcast, or finality proof. The current U.S. App Store listing does not yet describe Nyomi.
This page applies only to NOVA - Solana Wallet, App Store ID 6753857720, bundle ID com.novawallet.ios, published by 404 ENTERPRISES, LLC—not the separate product at docs.novawallet.io.
Send factual corrections to hi@nshield.org. Never include a recovery phrase, private key, PIN, or signing payload.