Skip to main content
Framework library
Framework module · owasp-genai-llm-top-10-2026

OWASP GenAI LLM Top 10

OWASP's current community-driven guide to the most critical security risks for applications powered by large language models. It is security guidance, not a compliance certification or organizational assurance report.

2026 · OWASP GenAI Security Project · published 2026-08-03

Standing today
Directory entry

00Answer

from the registry record
What is OWASP GenAI LLM Top 10?
OWASP's current community-driven guide to the most critical security risks for applications powered by large language models. It is security guidance, not a compliance certification or organizational assurance report.
Who does OWASP GenAI LLM Top 10 apply to?
OWASP GenAI LLM Top 10 applies to AI, technology, SaaS, global, per OWASP GenAI Security Project.
What is the current version of OWASP GenAI LLM Top 10?
The current edition is 2026, issued by OWASP GenAI Security Project and published 2026-08-03. Source: https://genai.owasp.org/resource/owasp-genai-llm-top-10-2026/.
What does an assessment under OWASP GenAI LLM Top 10 require?
10 control units are on record (Ranked risk categories in the OWASP GenAI LLM Top 10 2026. These are risk categories, not certification controls, and are not ingested here.), organized into 4 control families: LLM application threats, Attack scenarios, Mitigations, Framework mappings.

01Standing

Directory entry

Authority and version facts, with a parsed public catalog when available; no tenant blueprint or executable evidence method is activated.

OWASP GenAI LLM Top 10 is tracked in the registry — authority, version ledger, verification — and nothing else is modelled for it yet. Import its catalog to begin.

OWASP publishes the guide openly. Preserve the publication's attribution and license terms before reproducing or adapting its content in a product catalog.

02Registry record

checked 2026-08-30
Registry status
Planned · namedTracked metadata: we name the regime and monitor its issuing authority. No control or requirement model is implemented.
Control units
10Ranked risk categories in the OWASP GenAI LLM Top 10 2026. These are risk categories, not certification controls, and are not ingested here.
Control families
LLM application threats · Attack scenarios · Mitigations · Framework mappings
Applies to
AI · technology · SaaS · global
Verification
Primary — the issuing body's own page was read and states this version. checked 2026-08-30

03Version ledger

2 editions
2025Superseded2024-11-17
2026Current edition · supersedes 20252026-08-03

05Change history

06Related frameworks

scored from registry facts
  1. AIUC-1Q3 2026 (2026-07-15 release)

    Also applies to AI · A quarterly updated standard and certification program for AI agents covering data and privacy, security, safety, reliability, accountability, and societal risk. Only AIUC can issue its certificate; registry inclusion makes no certification claim.

  2. Also applies to AI · The Cloud Security Alliance's vendor-neutral control framework for cloud-based AI systems, with implementation and auditing guidance plus the companion AI-CAIQ. It is a control catalog, not by itself a certification or STAR for AI designation.

  3. Also applies to AI · OWASP's peer-reviewed risk framework for autonomous and agentic AI applications, including systems that plan, use tools, hold memory, or coordinate multi-step workflows. It is guidance, not a certification.

  4. CSA STARSTAR Level 1 and Level 2

    Also applies to SaaS · The Cloud Security Alliance's cloud-assurance program and public registry. Level 1 is a CCM/CAIQ self-assessment; Level 2 is a third-party certification or attestation path. Tracking STAR does not place ControlFrame or any customer on the registry.

OWASP GenAI LLM Top 10 | ControlFrame