owasp llm skills

32 tagged owasp llm, measured the same way as everything else here.

Browse within: ai-security 29appsec 27owasp 27owasp-juice-shop 27owasp-llm-top-10 27

ask-threat-model

01

appsec-foundry/appsec-advisor

Skill Claude CodeCodex

Answer ANY question about the threat model in this repo — read-only Q&A over the committed threat-model.yaml. The default surface for every natural-language query about the model, however simple: does one exist at all ("is there a threat model here?", "gibt es hier ein bedrohungsmodell?"), how it stands ("how bad is…

16 today A 236 tokens

appsec-foundry/appsec-advisor

Skill Claude CodeCodex

Audit the current repository against a security requirements catalog and verify whether each requirement is implemented. Requirement IDs follow your catalog's own naming scheme (e.g. SEC-CSP-1, SCG-HARDENXML, or anything your YAML defines); tagging code with those IDs is optional and not required. Prints open…

16 changed today A 115 tokens

review-threat-model

03

appsec-foundry/appsec-advisor

Skill Claude CodeCodex

User-facing triage of an existing threat model — an overview-first console over an already-generated threat-model.yaml (backlog by priority, severity mix, worst-case scenarios), then one of three modes. "Just look around" browses findings read-only by severity, security aspect, requirement, or control posture. "Fix or…

16 today A 200 tokens

dacuma-labs/agent-security-audit

Skill Claude CodeCodex

Audits AI agent projects for security risks in prompts, tools, memory, RAG, and permissions. Use when: the user asks to review agent security, harden an agentic system, check for prompt injection risks, audit tool permissions, or secure an AI assistant before deployment. Do NOT use for: projects with no agentic…

2 5mo ago A 82 tokens original MIT