Skip to main content

OWASP Agentic Security Top 10 defensive implementations

Project description

aumos-owasp-defenses

OWASP Agentic Security Top 10 defensive implementations

CI PyPI version Python versions License

Part of the AumOS open-source agent infrastructure portfolio.


Features

  • Ten discrete defense modules aligned to the OWASP Agentic Security Top 10 (ASI-01 through ASI-10), each independently importable and composable
  • AgentScanner performs structural analysis of an agent configuration dict and scores all ten ASI categories with findings, recommendations, and a letter grade (A–F)
  • Four scan profiles — standard, quick, mcp_focused, and compliance (stricter thresholds) — so CI pipelines can tune thoroughness vs. speed
  • Defense primitives include BoundaryDetector, SchemaValidator, RateLimiter, CapabilityChecker, VendorVerifier, ScopeLimiter, ProvenanceTracker, MessageValidator, CircuitBreaker, TrustVerifier, BaselineProfiler, and DriftDetector
  • Middleware guards for LangChain, CrewAI, and generic ASGI/callable stacks that wrap existing agents without requiring internal changes
  • agentcore bridge hooks the scanner into the EventBus so defense checks fire automatically on lifecycle events
  • Report generator produces per-category results with actionable remediation steps in JSON or Markdown

Quick Start

Install from PyPI:

pip install aumos-owasp-defenses

Verify the installation:

aumos-owasp-defenses version

Basic usage:

import aumos_owasp_defenses

# See examples/01_quickstart.py for a working example

Documentation

Enterprise Upgrade

For production deployments requiring SLA-backed support and advanced integrations, contact the maintainers or see the commercial extensions documentation.

Contributing

Contributions are welcome. Please read CONTRIBUTING.md before opening a pull request.

License

Apache 2.0 — see LICENSE for full terms.


Part of AumOS — open-source agent infrastructure.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

aumos_owasp_defenses-0.1.0.tar.gz (117.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

aumos_owasp_defenses-0.1.0-py3-none-any.whl (103.2 kB view details)

Uploaded Python 3

File details

Details for the file aumos_owasp_defenses-0.1.0.tar.gz.

File metadata

  • Download URL: aumos_owasp_defenses-0.1.0.tar.gz
  • Upload date:
  • Size: 117.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.9

File hashes

Hashes for aumos_owasp_defenses-0.1.0.tar.gz
Algorithm Hash digest
SHA256 183138354e17d5ed464099dce7c3d2557940b0a1bfd9557b18c3f1d8b80efaf2
MD5 0f90633f954d48aba4009fcf133430fb
BLAKE2b-256 89975493c2a077215dd50d120818e415acd36bde1a6eb7cc10b6dbee061d35c9

See more details on using hashes here.

File details

Details for the file aumos_owasp_defenses-0.1.0-py3-none-any.whl.

File metadata

File hashes

Hashes for aumos_owasp_defenses-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 88bbcfc5fa48320b0141143f2b6c384c5f93359dac1ab9b9f3bae787430d5f3b
MD5 704b6346bf8479e49c65879681414f18
BLAKE2b-256 97dfa733ddc266d6a6ca01da700554e432ec36378f7cd957ec5d61beda73cffd

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page