audit-llm-security
Installation
SKILL.md
audit-llm-security — OWASP LLM Top 10
Degree of freedom: MIXED — Phases 0–1 [HIGH freedom]; Phase 2 live
probes [LOW freedom — run exactly] (benign policy probes only; stop at
evidence).
Read-only. You verify that user-facing LLM features cannot be hijacked, leak
secrets, or spend without a bound. Quality/cost traces belong to
audit-langfuse-llm; coding-agent policy belongs to enhance-agent-guardrails.
The failure mode is silent: a chatbot that looks helpful in demo will follow a pasted instruction, dump the system prompt, or call a privileged tool.
Present findings. Do not patch until the user approves. Never paste secret values, full system prompts, or live API keys into the report.