Loading the catalogue…
Loading the catalogue…
Nexusflow was a Palo Alto-based generative AI startup founded in 2023 by academics from UC Berkeley and Stanford, specialising in open-weights function-calling and agentic LLMs. The organisation was quietly acquired by Nvidia around June 2025; all key founders and engineers have since joined Nvidia, the nexusflow.ai domain is offline with an SSL failure, and no independent operations continue. EU regulated-sector customers should treat the Nexusflow catalogue as an archived, unmaintained set of open-weights models under Nvidia's de facto stewardship — with full CLOUD Act and FISA 702 exposure, no active privacy or compliance infrastructure, no GDPR provisions, and custom non-standard licences on the Athene-V2 family that require independent legal review before any commercial deployment.
Nexusflow has been acquired by Nvidia (circa June 2025) and no longer operates as an independent entity. The website is offline (SSL hostname mismatch confirmed June 2026), the HuggingFace org API returns 404, and all key founders and engineers have joined Nvidia. There is no active team maintaining models, responding to security issues, or providing compliance support. This is an unmaintained catalogue.
Fully CLOUD Act and FISA 702 exposed as a US-incorporated entity, now owned by Nvidia — itself a major US corporation. US government can compel access to any data processed by Nexusflow/Nvidia under these frameworks, regardless of where data is stored. For self-hosted open-weights deployments, this risk is mitigated (no runtime data transmission to creator infrastructure).
No EU AI Act compliance statement, no Article 53 GPAI technical documentation, and no GPAI Code of Practice participation. The Athene-V2 family likely qualifies as a GPAI model under Regulation (EU) 2024/1689. With the organisation wound down, remediation is effectively impossible.
Privacy policy was US-centric (CCPA/Nevada only) with no GDPR provisions, no DPA, no named DPO, and no EU data transfer mechanisms. Privacy contact email (privacy@nexusflow.ai) is unreachable as the domain is offline. EU enterprises cannot rely on any Nexusflow privacy infrastructure. Self-hosted deployments mitigate this risk.
Athene-V2 models (Chat and Agent) are released under a custom 'Nexusflow Research Licence' rather than a standard permissive licence (e.g. Apache 2.0). The issuing entity is now defunct, creating legal uncertainty around commercial deployment rights, warranty, and enforcement. Starling-LM-7B-beta carries an Apache-2.0 licence with a condition prohibiting use to compete with OpenAI — an unusual restriction requiring legal review.
No SOC 2, ISO 27001, or equivalent security certifications were ever published. No bug bounty or responsible disclosure policy exists. No active security team post-acquisition. Open-weights models cannot receive security patches or updates from the original creator.
The HuggingFace organisation page returns API 404, suggesting the org is partially archived or degraded. Individual model pages are still accessible as of June 2026 but long-term availability cannot be guaranteed without active stewardship. Stav catalogue currently shows 0 models for this creator.
Stav AI Act assessment
Editorial assessment, not legal advice. Stav's risk ratings, scores, and verdicts are our own analysis of publicly available information and may be incomplete or out of date. Verify independently before making compliance or procurement decisions.
NexusRaven-V2 model card explicitly states that training data does not include any proprietary LLM-generated data (e.g. GPT-4), reducing distillation-related licence risk and enabling enterprise customers to make informed deployment decisions.
Athene-V2-Chat and Athene-V2-Agent model cards include benchmark results, base model provenance (Qwen 2.5 72B-Instruct), and RLHF methodology, enabling independent verification of model characteristics.
Open-source code repositories on GitHub are Apache 2.0 licensed for model runners and evaluation frameworks, enabling full auditability and permissive reuse by enterprise teams.
Nexusflow published the NexusRaven V2 Function Calling Benchmark leaderboard with reproducible evaluation data (CC-BY-NC-4.0), supporting independent verification of model performance claims.
Founders brought strong academic credentials (UC Berkeley BAIR Lab, Stanford AI Lab) and attracted reputable institutional investors (Point72 Ventures, Fusion Fund), indicating the underlying model research is credible and documented via arXiv technical reports.
NexusRaven-V2 evaluation data is correctly labelled CC-BY-NC-4.0 (reflecting upstream ToolLLM/ToolAlpaca data), demonstrating awareness of upstream licence obligations during the period of independent operation.
As open-weights models with no first-party inference endpoint on Stav, self-hosted deployments of Nexusflow models transmit no data to Nexusflow or Nvidia infrastructure at inference time, achieving effective data sovereignty for EU customers who manage their own hosting.
Privacy policy review
Creator profile
Nexusflow was a Palo Alto-based generative AI startup specialising in open-weights function-calling and agent LLMs for enterprise cybersecurity workflows, founded in 2023 by academics from UC Berkeley and Stanford. The organisation was quietly acquired by Nvidia around June 2025, with key founders and engineers joining Nvidia's research division; the nexusflow.ai domain is now offline and the HuggingFace organisation page is unavailable, signalling that Nexusflow has effectively ceased independent operations. EU regulated-sector customers should treat Nexusflow's published models as an archived, unmaintained open-weights catalogue under Nvidia's stewardship — with full CLOUD Act exposure and no active privacy, security, or compliance infrastructure of its own.
Stav editorial summary
Nexusflow is a United States entity. Training data and weights produced under United States-jurisdiction are covered by the CLOUD Act.
Exposed on training. Inference is unaffected when hosted on Stav infrastructure inside the EEA.
Stav compliance has not yet scored Nexusflow. Scores are published once the policy review and infrastructure assessment complete.
Findings
Citations gathered when the Compliance Curator last reviewed this creator’s public-facing documents. Grouped by source so the picture stays auditable.
“This model was trained on commercially viable data and is licensed under the Nexusflow community license. ”
“Finetuned from model: Qwen 2.5 72B-Instruct · License: Nexusflow Research License · Blog: https://nexusflow.ai/blogs/athene-v2 · Athene-V2-Chat uses t...”
“Jiantao Jiao founded the enterprise AI security company Nexusflow, which was later acquired and he joined NVIDIA....”
Nexusflow was acquired on 01-Jun-2025. Nexusflow was acquired by Nvidia.
Jiantao Jiao founded the enterprise AI security company Nexusflow, which was later acquired and he joined NVIDIA....
Both co-founded cybersecurity-focused AI startup Nexusflow, which Nvidia appears to have quietly acquired, bringing Zhu on board as Chief Research Sci...
Nexusflow - Provider of generative AI company specializing in creating and updating AI agents for cybersecurity workflow optimization.
Professors Jiantao Jiao and Kurt Keutzer from the Berkeley AI Research Lab and Jian Zhang, who earned his doctorate from the Stanford AI Lab and previ...
The code in this repository for running the NexusRaven model, the evaluation framework, and the data processing code are licensed under Apache 2.0.
This model was trained on commercially viable data and is licensed under the Nexusflow community license.
Published safeguards & certifications
“The code in this repository for running the NexusRaven model, the evaluation framework, and the data processing code are licensed under Apache 2.0. ”
“Professors Jiantao Jiao and Kurt Keutzer from the Berkeley AI Research Lab and Jian Zhang, who earned his doctorate from the Stanford AI Lab and previ...”
“Carrying out other business purposes stated when collecting your Personal Data or as otherwise set forth in applicable data privacy laws, such as the ...”
“Nexusflow was acquired on 01-Jun-2025. Nexusflow was acquired by Nvidia. ”
“Both co-founded cybersecurity-focused AI startup Nexusflow, which Nvidia appears to have quietly acquired, bringing Zhu on board as Chief Research Sci...”
“Nexusflow - Provider of generative AI company specializing in creating and updating AI agents for cybersecurity workflow optimization. ”
“In November last year, the company released the open-source model Athene-V2, with Athene-V2-Chat reportedly rivaling GPT-4o in benchmarks related to c...”
As classified under Regulation (EU) 2024/1689.
Provider of GPAI model (general-purpose).
Finetuned from model: Qwen 2.5 72B-Instruct · License: Nexusflow Research License · Blog: https://nexusflow.ai/blogs/athene-v2 · Athene-V2-Chat uses t...
In November last year, the company released the open-source model Athene-V2, with Athene-V2-Chat reportedly rivaling GPT-4o in benchmarks related to c...
Carrying out other business purposes stated when collecting your Personal Data or as otherwise set forth in applicable data privacy laws, such as the ...