OWASP Top 10 for Agentic Applications 2026
ASI07 Insecure Inter-Agent Communication
Messages between agents are spoofed, tampered with, or trusted without authentication.
Categories that mitigate it
Vendors that say they address it
Only vendors that publish their own mapping to this threat are listed.
- PromptfooBeing acquired by OpenAI31
Open-source red teaming, static scanning, and evaluation for LLM applications and agents, with plugins for tool misuse, MCP, memory poisoning, and prompt injection. OpenAI agreed to acquire it in March 2026 and committed to keep it open source.