Skip to main content

ai-agent-security

Secure AI agents against prompt injection, tool abuse, and data exfiltration with defense-in-depth controls.

来源信息

仓库
Njones17/AI-agent-master-cyber-skills-list
最近来源活动
2026年3月6日 16:13
检测到的 SKILL.md 语言
英语
星标
23
分支
6

安装方式

默认使用会先检查来源的 Prompt;你也可以切换为直接命令,或下载本地副本。

检查来源文件

决定是否安装前,请先阅读 SKILL.md,以及 SkillsMP 当前展示的配套文件。

正在显示 SKILL.md

SKILL.md
来源说明 · 只读预览
name
ai-agent-security
description
Secure AI agents against prompt injection, tool abuse, and data exfiltration with defense-in-depth controls.
license
MIT
metadata
{"author":"devops-skills","version":"1.0"}
# AI Agent Security Protect agentic systems from adversarial input and unsafe tool execution. ## Threats to Model - Prompt injection through untrusted content - Excessive permissions on tools and APIs - Data exfiltration via model responses - Cross-tenant context leakage ## Security Controls 1. Isolate tool execution with strict allowlists. 2. Add policy checks before sensitive actions. 3. Limit token scope and credential lifetimes. 4. Apply output filtering for sensitive data. 5. Log every privileged tool invocation. ## Incident Readiness - Keep immutable audit trails for prompts and tool calls. - Build kill switches for high-risk tools. - Run regular red-team scenarios. ## Related Skills - [llm-app-security](../llm-app-security/) - Application-layer LLM defenses - [threat-modeling](../../operations/threat-modeling/) - Structured risk analysis
在 GitHub 查看