
agent-governance-toolkit
Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…

Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

OWASP Smart Contract Security (SCS) Project

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Your gateway to OWASP. Discover, engage, and help shape the future!

The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and…

OWASP enumeration of common security and privacy weaknesses in mobile applications, serving as a reference bridging the MASVS verification standard…

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Curated directory of Node.js security tools, static analyzers, vulnerability scanners, and educational resources covering OWASP Top 10, supply chain…

A list of web application security

OWASP Autonomous Penetration Testing Standard

OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

German OWASP Day conference site & presentation archive

Community-led OSINT verification standard with testable requirements, acceptance tests, JSON schemas, and assessment formats for safer, interoperable…

Official OWASP Top 10 Document Repository

OWASP Top 10 for Large Language Model Apps (Part of the GenAI Security Project)