Skip to content

OWASP/AISVS

Repository files navigation

OWASP Artificial Intelligence Security Verification Standard (AISVS)

CC BY-SA 4.0

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.

CC BY-SA 4.0

Introduction

The Artificial Intelligence Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to evaluate and verify the security and ethical considerations of AI-driven applications. Modeled after existing OWASP standards (such as the AISVS for web applications), AISVS will define categories of requirements for areas including:

  1. Training Data Governance & Bias Management
  2. User Input Validation
  3. Model Lifecycle Management & Change Control
  4. Infrastructure, Configuration & Deployment Security
  5. Access Control & Identity
  6. Supply Chain Security for Models, Frameworks & Data
  7. Model Behavior, Output Control & Safety Assurance
  8. Memory, Embeddings & Vector Database Security
  9. Autonomous Orchestration & Agentic Action Security
  10. Adversarial Robustness & Attack Resistance
  11. Privacy Protection & Personal Data Management
  12. Monitoring, Logging & Anomaly Detection
  13. Human Oversight and Trust

Please log issues if you find any bugs or if you have ideas. We may subsequently ask you to open a pull request based on the discussion in the issue.

Project Leaders

The project is led by the two project leaders Jim Manico and Russ Memisyazici.

License

The entire project content is under the Creative Commons Attribution-Share Alike v4.0 license.

About

No description, website, or topics provided.

Resources

License

Security policy

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors 11