Administrators can understand the shape of the protected system faster.
See the protected site inside the wider security picture.
Threat Constellation gives Nexus PRO a live security topology. Security Twin / Attack Surface mode turns that same system into an operational map of public, authenticated and monitored surfaces.
A living map of the site, the surfaces around it and the Nexus layers protecting it.
The topology is driven by actual site state and recorded local evidence. It is not decorative theater. It is meant to help administrators understand what is exposed, what is protected and which layer responded.
- Dedicated view for the protected site, security surfaces and active modules
- Evidence-led display rather than invented attack stories
- Useful for demos, operations and product differentiation
- Licensing-gated premium capability in Nexus PRO


Understand what is public, what is authenticated and what stays internal.
This mode focuses less on current evidence and more on the site’s operational shape. It helps an administrator understand where the attack surface really is and how Nexus sees it.
- Public surfaces such as login, REST API and commerce endpoints
- Authenticated and monitored areas such as WP Admin and plugins
- Disabled or reduced-risk surfaces, such as XML-RPC when unavailable
- A more impressive and more understandable product story for the website
Topology and attack surface make other Nexus evidence easier to interpret.
The feature is visually strong enough to become a signature Nexus differentiator.
Threat Constellation is part of the active Nexus PRO experience.
It is intended to remain a premium capability, together with Security Twin and other advanced operational views.