Skip to main content
ZNYX AI

Evidence & compliance

OWASP LLM Top-10 coverage, generated from your policy.

Not a claim in a datasheet. The scorecard is derived from the detectors your environment actually has enabled, so it changes when your policy changes, and it is exportable for questionnaires and CISO reviews.

Coverage scorecard · policy prod-v42 · env production6 full · 3 partial · 1 gap
OWASP LLM Top-10 risks mapped to the ZNYX detectors that cover them, with per-risk coverage status
IDRiskMapped detectorsCoverageStatus
LLM01Prompt Injectionjailbreak · retrieval_chunk_injection · tool_output_injectionPartial
LLM02Sensitive Information Disclosurepii · secrets · exfiltration · sensitive_business_dataFull
LLM03Excessive Agencyexcessive_agency · toolsFull
LLM04Supply Chainmcp_manifest_scanner · toolsPartial
LLM05Data & Model Poisoningretrieval_chunk_injection · memory_write_poisoningGap
LLM06Unbounded Consumptionunbounded_consumptionFull
LLM07Misinformationhallucination · citation_integrity · numerical_consistencyFull
LLM08Hidden Context Exposuresystem_prompt_leakage · document_metadata_leakagePartial
LLM09Vector & Embedding Weaknessesembedding_integrity · retrieval_chunk_injectionFull
LLM10Improper Output Handlingstructure · code_safety · malicious_urlFull

Coverage reflects implemented detectors mapped to the OWASP Top 10 for LLM Applications (2026 edition). Partial entries indicate risks that ZNYX mitigates but which also depend on controls outside the runtime. LLM05 is a gap: training-data, fine-tune, and model-weight poisoning happen upstream of the runtime and are not addressed by a ZNYX control today.

Artifacts

What you can actually hand an auditor

OWASP LLM Top-10 coverage scorecard

Generated from the detectors your policy actually enables, per environment, not a static marketing claim.

Detector scorecards

Precision, recall, F1, AUROC, ECE, and per-language breakdowns for every detector in the bundle.

ISO 42001 model cards

Fairness and bias model cards plus judge audit events, formatted for AI-governance review.

Immutable audit trail

Every decision, policy version, and judge verdict written as an append-only event with retention controls.

  • ISO 42001
  • EU AI Act
  • NIST AI RMF
  • OWASP LLM Top 10

FAQ

OWASP LLM Top 10 questions

How the mapping is built, how coverage is scored, and what it is honest about.

The mapping covers all ten categories, LLM01 prompt injection through LLM10 improper output handling, but coverage is not uniform and the page says which is which. Coverage is expressed as a 0-100 score per category rather than a tick, because a category like insecure output handling is partly an application concern that no gateway can close on your behalf.

Secure every prompt, agent, and tool call, in your boundary.

Pull the open-source runtime, drop it into your stack, and start enforcing policy in minutes, free, forever. Add the hosted control plane when you want centralized policies, evidence, traces, and team workflows.