This skill encodes the OWASP Top 10 Privacy Risks for privacy-aware design and review. References are loaded per risk. Based on OWASP Top 10 Privacy Risks v2.0 2021.
| P1 Web Application Vulnerabilities | references/p1-web-app-vulnerabilities.md | | P2 Operator-sided Data Leakage | references/p2-operator-data-leakage.md | | P3 Insufficient Data Breach Response | references/p3-breach-response.md | | P4 Consent on Everything | references/p4-consent.md |
| P5 Non-transparent Policies | references/p5-non-transparent-policies.md | | P6 Insufficient Deletion of User Data | references/p6-insufficient-deletion.md | | P7 Insufficient Data Quality | references/p7-data-quality.md | | P8 Missing or Insufficient Session Expiration | references/p8-session-expiration.md |
OWASP Top 10 Privacy Risks - prevention, detection, and remediation for privacy in web applications. Use when addressing app vulnerabilities, data leakage, breach response, consent, transparency, data deletion, data quality, session expiration, user access rights, excessive data collection. Source: yariv1025/skills.