common-llm-security is agent-read markdown (skill) from hoangnguyen0403/agent-skills-standard: OWASP LLM Top 10 (2025) audit checklist for AI applications, agent tools, RAG pipelines, and prompt construction. Use when performing any security review touching LLM client code, prompt templates, agent tools, or vector stores..
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
What the file says
# OWASP LLM Top 10 Security Checklist (2025)
## **Priority: P0 (CRITICAL)**
## Implementation Guidelines
- **Check LLM01 first**: Prompt injection #1 LLM finding — any user input concatenated directly into prompt string immediate P0.
- **Check LLM06 next**: Agent tools with write/delete/execute capabilities without confirmation P0.
- **Mark each item**: ✅ not affected | ⚠️ needs review | 🔴 confirmed finding.
- **P0 finding caps Security score at 40/100** — not skip any item.
- See [references/owasp-llm.md](references/owasp-llm.md) for full detection signals.
## OWASP LLM Top 10 (2025)
| ID | Risk | Key Detection Signal |
| ----- | ---- | -------------------- |
| LLM01 | Prompt Injection | User input string-concatenated into prompt. Retrieved docs inserted into system turn. |
| LLM02 | Sensitive Information Disclosure | PII or credentials passed into prompt context. LLM response logged without redaction. |
| LLM03 | Supply Chain | Unverified model weights or plugins. Third-party agent added without trust review. |
| LLM04 | Data & Model Poisoning | User-controlled data written to training sets or embedding stores without validation. |
…
Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
GET https://markdownregistry.com/api/v1/artifacts/art_kuw7ftvz5sj6tfyx
GET https://markdownregistry.com/api/v1/resolve?ref=hoangnguyen0403/agent-skills-standard/common-llm-security
GET https://markdownregistry.com/api/v1/blob/eea5bf8560c3790dc6af0a8cafe8b9455542a969316ae5bff26b2dc58877dcf3
Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.
hoangnguyen0403/agent-skills-standard · .agents/skills/caveman-compress/SKILL.md · Compress natural language memory files (CLAUDE.md, todos, preferences) into caveman format to save input tokens…
hoangnguyen0403/agent-skills-standard · .agents/skills/caveman-review/SKILL.md · Ultra-compressed code review comments. Cuts noise from PR feedback while preserving the actionable signal. Each comment…
hoangnguyen0403/agent-skills-standard · .agents/skills/caveman/SKILL.md · Ultra-compressed communication mode. Cuts token usage ~75% by speaking like caveman while keeping full technical…
hoangnguyen0403/agent-skills-standard · .agents/skills/common/common-architecture-diagramming/SKILL.md · Draw architecture diagrams as editable draw.io files with a fixed house style, C4 levels, and evidence-tagged shapes…
hoangnguyen0403/agent-skills-standard · .agents/skills/common/common-business-requirements/SKILL.md · Standardize BRD and BRD-lite discovery for business goals, stakeholder impact, current-to-future state, and measurable…
hoangnguyen0403/agent-skills-standard · .agents/skills/common/common-dast-tooling/SKILL.md · Standardize dynamic application security testing for backend APIs, frontend web apps, and mobile clients. Covers ZAP…
hoangnguyen0403/agent-skills-standard · .agents/skills/common/common-debugging/SKILL.md · Troubleshoot systematically using the Scientific Method. Use when debugging crashes, tracing errors, diagnosing…
hoangnguyen0403/agent-skills-standard · .agents/skills/common/common-documentation/SKILL.md · Write effective code comments, READMEs, and technical documentation following intent-first principles. Use when adding…