OWASP Top 10 for LLM Applications 2025¶
Reference
Citation: OWASP. "OWASP Top 10 for LLM Applications 2025." Type: guidance. Link: owasp.org/www-project-top-10-for-large-language-model-applications.
What it is¶
A ranked list of the top security risks for applications built on large language models. It is maintained by the OWASP community.
Role in the record¶
- Grounds BP03: prompt injection (LLM01) is the top-ranked risk; the documented risk that vetting guards against.
Atom-level for/against detail and quotes are in the provenance data (assets/provenance.yml), keyed by practice atom.