Favicon of owasp-agentic

owasp-agentic Skill

AI Agent SkillPowerShellOpen source

OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks. Published by microsoft in hve-core.

Decision snapshot

Is this a fit?

Best for

Security review, Includes SKILL.md, Reusable instructions

Works with

Compatibility not yet detected.

Access

Permission behavior not yet detected.

Setup

Copy skill directory

Project health

2 months ago · MIT license

Considerations

No specific cautions were detected. Review the source and requested permissions before installing.

What is owasp-agentic Skill?

OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks. Published by microsoft in hve-core. This profile combines repository metadata with install, compatibility, and usage signals so developers can quickly decide whether it fits their agent workflow before opening the source repository.

Trust signal
95/100
Maintenance signal
90/100
Adoption signal
77/100

Automated repository signals based on public metadata such as recency, license, installation evidence, and adoption. These are not a security audit or endorsement. See how SkillIndex evaluates profiles.

Key capabilities

  • Includes SKILL.md support
  • Reusable instructions support
  • Security review
  • Security review use cases

Declared skill metadata

  • Declared license: CC-BY-SA-4.0
  • Source file: .github/skills/security/owasp-agentic/SKILL.md

These fields retain source and confidence evidence from the indexed SKILL.md.

Compatibility and setup

Copy skill directory
  • Install or run with Copy skill directory

When to use owasp-agentic Skill

  • Use it for security review.

Built with

PowerShellCopy skill directory

Editorial notes

Source

  • Creator: microsoft
  • Repository: microsoft/hve-core
  • Skill file: .github/skills/security/owasp-agentic/SKILL.md

What it does

OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.

Skill instructions

OWASP® Agentic Top 10 — Skill Entry This SKILL.md is the entrypoint for the OWASP Agentic Top 10 skill. The skill encodes the OWASP Top 10 for Agentic Applications (2026) as structured, machine-readable references that an agent can query to identify, assess, and remediate security risks in AI agent systems. Normative references (Agentic Top 10) 1. 00 Vulnerability Index 2. 01 Agent Goal Hijack 3. 02 Tool Misuse and Exploitation 4. 03 Identity and Privilege Abuse 5. 04 Agentic Supply Chain Vulnerabilities 6. 05 Unexpected Code Execution 7. 06 Memory and Context Poisoning 8. 07 Insecure Inter-Agent Communication 9. 08 Cascading Failures 10. 09 Human-Agent Trust Exploitation 11. 10 Rogue Agents Skill layout SKILL.md — this file (skill entrypoint). references/ — the Agentic Top 10 normative documents. 00-vulnerability-index.md — index of all vulnerability identifiers, categories, and cross-references. 01 through 10 — one document per vulnerability aligned with OWASP Agentic Security number

Verified compatibility and discovery

Frequently asked questions

What is owasp-agentic?

owasp-agentic is a open-source AI agent skill with Copy skill directory. OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.

Who is owasp-agentic best for?

owasp-agentic is best for reusing agent instructions, scripts, and references, security review workflows.

How do I install owasp-agentic?

Install or run owasp-agentic using Copy skill directory. Check owasp-agentic for the latest setup command.

Is owasp-agentic actively maintained?

owasp-agentic may need a closer maintenance check before production use.

Share:

Stars
1,263
Forks
229
Last commit
2 months ago
Last verified
Aug 27, 2026
Metadata fetched
Aug 27, 2026
Repository age
10 months
License
MIT

Project health auto-fetched from the source repository.

Maintain this resource?

Review this source-backed profile, send a correction with evidence, or link to it from your documentation. Claims verify your relationship to the project; profile facts still require source evidence and editorial review.

Alternatives to owasp-agentic