owasp-top-10 Skill
OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks. Published by microsoft in hve-core.
What is owasp-top-10 Skill?
OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks. Published by microsoft in hve-core. This profile combines repository metadata with install, compatibility, and usage signals so developers can quickly decide whether it fits their agent workflow before opening the source repository.
Automated repository signals based on public metadata such as recency, license, installation evidence, and adoption. These are not a security audit or endorsement.
Key capabilities
- Includes SKILL.md support
- Reusable instructions support
- Security review
- Data analysis
- Design and media
- Security review use cases
- Data analysis use cases
Technical details
- Install or run with Copy skill directory
When to use owasp-top-10 Skill
- Use it for security review.
- Use it for data analysis.
- Use it for design and media.
Built with
Editorial notes
Source
- Creator: microsoft
- Repository: microsoft/hve-core
- Skill file: .github/skills/security/owasp-top-10/SKILL.md
What it does
OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.
Skill instructions
OWASP® Top 10 — Skill Entry This SKILL.md is the entrypoint for the OWASP Top 10 skill. The skill encodes the OWASP Top 10 for Web Applications (2025) as structured, machine-readable references that an agent can query to identify, assess, and remediate web application security risks. Normative references (Web Top 10) 1. 00 Vulnerability Index 2. 01 Broken Access Control 3. 02 Security Misconfiguration 4. 03 Software Supply Chain Failures 5. 04 Cryptographic Failures 6. 05 Injection 7. 06 Insecure Design 8. 07 Authentication Failures 9. 08 Software or Data Integrity Failures 10. 09 Security Logging and Alerting Failures 11. 10 Mishandling of Exceptional Conditions Skill layout SKILL.md — this file (skill entrypoint). references/ — the Web Top 10 normative documents. 00-vulnerability-index.md — index of all vulnerability identifiers, categories, and cross-references. 01 through 10 — one document per vulnerability aligned with OWASP Web Application Security numbering. Third-Party Attribut
Explore related resources
Frequently asked questions
What is owasp-top-10?
owasp-top-10 is a open-source AI agent skill with Copy skill directory. OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.
Who is owasp-top-10 best for?
owasp-top-10 is best for reusing agent instructions, scripts, and references, security review workflows, data analysis workflows, design and media workflows.
How do I install owasp-top-10?
Install or run owasp-top-10 using Copy skill directory. Check owasp-top-10 for the latest setup command.
Is owasp-top-10 actively maintained?
owasp-top-10 may need a closer maintenance check before production use.
Auto-fetched from GitHub.