OWASP Artificial Intelligence Security Verification Standard (AISVS)

The Artificial Intelligence Security Verification Standard (AISVS) is a community-driven catalogue of testable security requirements for AI-enabled systems. It gives developers, architects, security engineers, and auditors a structured framework to design, build, test, and verify the security of AI applications throughout their lifecycle, from data collection and model training to deployment, monitoring, and retirement.

About OWASP Artificial Intelligence Security Verification Standard (AISVS)

What is AISVS?

The Artificial Intelligence Security Verification Standard (AISVS) is a community-driven catalogue of testable security requirements for AI-enabled systems. It gives developers, architects, security engineers, and auditors a structured framework to design, build, test, and verify the security of AI applications throughout their lifecycle, from data collection and model training to deployment, monitoring, and retirement.

AISVS is modeled after the OWASP Application Security Verification Standard (ASVS), and every requirement is intended to be verifiable, testable, and implementable.

Latest Stable Version

AISVS 1.0 is the latest stable release. The standard is available as a PDF and as Markdown source in the project's GitHub repository. Development of AISVS 1.01 is in progress in the 1.01-dev directory; stable release folders are locked.

Verification Levels

Level 1 — Essential baseline controls for all AI applications, including internal tools and low-risk systems.

Level 2 — Standard controls for production systems, customer-facing AI, systems processing personal data, or making consequential decisions.

Level 3 — Advanced controls for critical infrastructure, safety-critical AI, high-value targets, regulated industries, and other high-assurance environments.

Most production systems should aim for at least Level 2.

How to Use AISVS

During design — Use requirements as a security checklist when architecting AI systems.

During development — Integrate requirements into CI/CD pipelines, code reviews, and testing.

During security assessments — Use AISVS as a verification framework for penetration testing and audits.

For procurement — Reference specific requirements when evaluating AI vendors and third-party models.

Project Leaders

Jim Manico

Founder & Project Leader

LinkedIn

Otto Sulin

Project Leader

GitHub

Rico Komenda

Project Leader

GitHub

Russ Memisyazici

Project Leader

LinkedIn

Project Information

Incubator Project
Classification
Standards
License
CC BY-SA 4.0
Latest Version
1.0
Compliance Standards
OWASP ASVSOWASP Top 10 for LLMsOWASP Top 10 for Agentic ApplicationsNIST AI RMFISO/IEC 42001EU AI Act
OWASP Logo
OWASP is a nonprofit foundation improving software security through open-source projects, global communities, and education. All resources are free and open to everyone.
OWASP, the OWASP logo, and Global AppSec are registered trademarks and AppSec Days, AppSec California, AppSec Cali, SnowFROC, OWASP Boston Application Security Conference, and LASCON are trademarks of the OWASP Foundation, Inc.
© 2026, OWASP Foundation Inc. All rights reserved.