# Agent OWASP Compliance

> OWASP ASI Top 10 audit before prod. Community Copilot skill

**Subcategory:** GitHub  
**License:** MIT  
**Source:** https://github.com/github/awesome-copilot/blob/main/skills/agent-owasp-compliance/SKILL.md

---

## When it is useful

Check any AI agent codebase against the OWASP Agentic Security Initiative (ASI) Top 10 risks. Use when evaluating an agent system's security posture before production deployment; running a compliance check against OWASP ASI 2026 standards; mapping existing security controls to the 10 agentic risks; generating a compliance report for security review or audit; comparing agent framework security features against the standard; or any request like "is my agent OWASP compliant?", "check ASI compliance", or "agentic security audit". Not for .mcp.json config audits (mcp-security-audit) and not Sentry security-review.

## The Catch

Community Copilot skill, not OWASP-official. ASI Top 10 agent audit before prod — distinct from mcp-security-audit (.mcp.json) and from Sentry security-review.
