RAG Security Review

Audits a Retrieval-Augmented Generation (RAG) pipeline for indirect prompt injection (OWASP LLM01), knowledge-base/data poisoning (LLM04), retrieval access-control and tenant-isolation gaps (LLM02/LLM08), and citation/grounding integrity (LLM09). Use when auditing, designing, threat-modeling, or hardening any system that retrieves documents and places their text into an LLM's context window — chatbots over internal docs, agentic search, customer-support assistants, code/knowledge assistants.

fevziegeyurtsevenler Updated

File contents

fevziegeyurtsevenler/llm-security-skills/tree/main/skills/rag-security-review commit 3864ff9763

Frequently asked questions

npx skillmds@latest add fevziegeyurtsevenler/rag-security-review