Robot Explains Gallery
A kid-friendly visual interpretation of the OWASP Top 10 for Agentic Applications — when AI can plan, act, use tools, and cause real consequences.
The OWASP Top 10 for Agentic Applications covers the risks that appear when AI can act — using tools, identity, memory, and permissions, and even working with other agents. This set reimagines those ten agentic risks as friendly visual cards, a companion to the LLM Top 10. For awareness and discussion, not a replacement for the official OWASP guidance.
Two lists, paired — because neither covers the other's ground:
Robot reads or writes something risky.
Robot uses tools, identity, memory, or permissions to do something risky.
Someone twists the robot's goal so it works toward the wrong thing.
View poster →
The robot's tools get used in ways they shouldn't be.
View poster →
The robot uses the wrong identity or more access than it should.
View poster →
An agent, tool, model, or connection the robot trusts isn't safe.
View poster →
The robot runs code or commands it was never meant to run.
View poster →
Bad info sneaks into the robot's memory and shapes what it does next.
View poster →
Robots talking to each other can be tricked, copied, or overheard.
View poster →
One small mistake sets off a chain of bigger ones.
View poster →
People trust the robot too much, or the robot is used to trick people.
View poster →
An agent goes off on its own and stops following the rules.
View poster →Robot Explains is an independent educational adaptation and is not official OWASP guidance. It is based on the OWASP Top 10 for Agentic Applications by the OWASP Agentic Security Initiative (ASI).
The OWASP material is licensed under Creative Commons Attribution-ShareAlike 4.0 (CC BY-SA 4.0), and these adapted posters are shared under the same license.