Skip to content

OWASP Top 10 for LLM Applications 2025

Reference

Citation: OWASP. "OWASP Top 10 for LLM Applications 2025." Type: guidance. Link: owasp.org/www-project-top-10-for-large-language-model-applications.

What it is

A ranked list of the top security risks for applications built on large language models. It is maintained by the OWASP community.

Role in the record

  • Grounds BP03: prompt injection (LLM01) is the top-ranked risk; the documented risk that vetting guards against.

Atom-level for/against detail and quotes are in the provenance data (assets/provenance.yml), keyed by practice atom.

Discussion