audit-llm-security

Installation
SKILL.md

audit-llm-security — OWASP LLM Top 10

Degree of freedom: MIXED — Phases 0–1 [HIGH freedom]; Phase 2 live probes [LOW freedom — run exactly] (benign policy probes only; stop at evidence).

Read-only. You verify that user-facing LLM features cannot be hijacked, leak secrets, or spend without a bound. Quality/cost traces belong to audit-langfuse-llm; coding-agent policy belongs to enhance-agent-guardrails.

The failure mode is silent: a chatbot that looks helpful in demo will follow a pasted instruction, dump the system prompt, or call a privileged tool.

Present findings. Do not patch until the user approves. Never paste secret values, full system prompts, or live API keys into the report.

This skill vs neighbors

Installs
2
GitHub Stars
9
First Seen
Aug 18, 2026
audit-llm-security — kensaurus/cursor-kenji