Back to skill

Security audit

Nexus Legal Analyzer

Security checks for vulnerabilities and agentic risk

Overview

This is an instruction-only legal analysis skill with no executable code, install hooks, credential requests, or persistence behavior.

Before using this with confidential contracts or compliance materials, confirm what tools or services the agent will use for retrieval, citations, and storage. Treat outputs as analysis support, not legal advice, and verify cited sources independently.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.