How to use this reference
Review permissions and action boundaries around an owned AI integration; treat filters and model-based checks as partial defenses rather than guarantees.
Before reading
- LLM application and tool-call basics
- Trust boundaries
- An understanding of the application's data and permissions
Context and limits
- Includes attack examples; this collection uses it as a defensive-design reference
- Guidance evolves and individual examples require contextual evaluation
Sources and provenance
- LLM Prompt Injection Prevention Cheat Sheet OWASP Cheat Sheet Series · reviewed 2026-10-02
Record reviewed 2026-10-02. Snapshot 53796974ace8. Open the complete JSON contract.