Security audit
Nexus Legal Analyzer
Security checks for vulnerabilities and agentic risk
Overview
This is an instruction-only legal analysis skill with no executable code, install hooks, credential requests, or persistence behavior.
Before using this with confidential contracts or compliance materials, confirm what tools or services the agent will use for retrieval, citations, and storage. Treat outputs as analysis support, not legal advice, and verify cited sources independently.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
