From ai-security-skills
Assesses LLM apps against OWASP Top 10 for LLM Applications 2025, covering prompt injection, data poisoning, supply chain risks, and more with attack scenarios. Use for RAG pipelines, chatbots, AI agents.
npx claudepluginhub cmaenner/agent-security-playbookThis skill uses the workspace's default tool permissions.
Comprehensive evaluation of LLM applications against OWASP Top 10 for LLM Applications 2025. Follow the detailed procedure in `plays/tier4-ai-security/llm-risk-assess.md`.
Tests LLM applications for OWASP Top 10 vulnerabilities using 10 specialized agents. Integrates with pentest workflows for comprehensive AI security assessments.
Conducts STRIDE threat modeling for systems or features, generating textual data flow diagrams, threat assessments with severity/likelihood/mitigations, and AI/LLM extensions.
Detects prompt injection attacks in LLM inputs using regex patterns, heuristic scoring, and DeBERTa classification. Scans for direct/indirect injections before model forwarding.
Share bugs, ideas, or general feedback.
Comprehensive evaluation of LLM applications against OWASP Top 10 for LLM Applications 2025. Follow the detailed procedure in plays/tier4-ai-security/llm-risk-assess.md.
Architecture & Threat Modeling
Automated Security Testing
Assess All 10 OWASP LLM 2025 Risks with attack scenarios:
Red Team Testing
Comprehensive LLM security report: