Who this is for

Engineering and product teams building AI agents, RAG systems, or any feature that puts an LLM in front of untrusted input or gives it access to tools and data. If your product calls a model API and does anything with the response beyond displaying it as plain text, this toolkit applies.

What's in the toolkit

How to use it

Start with the AI Security Checklist for the product-level view, then the Prompt Injection Checklist for the specific attack surface — most real incidents trace back to a gap this second checklist would have caught.

Go deeper

For a broader product-security engagement, see AI Security Kenya. For RAG-pipeline-specific and autonomous-agent-specific security, see RAG Security and AI Agent Security. For the technical deep-dive on injection mechanics, see Prompt Injection and LLM Security.

← Back to all Resources