Security audit
nexus-corporate-onboarder
Security checks across malware telemetry and agentic risk
Overview
This is a small instruction-only onboarding assistant, with no executable code or hidden behavior found.
Use this with approved onboarding documents, scoped read-only HRIS exports where possible, and review any compliance or legal training content before deployment. Treat the privacy marketing claim as something to verify in your own environment rather than as a technical guarantee from this artifact.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
