MAESTRO

08 - Threat Identification Checklists

Version: 1.0.0


Run through these checklists for each engagement. Each section corresponds to a MAESTRO layer. Complete the per-layer checklists first, then finish with the cross-layer checklist to catch emergent and cascading threats.


Table of Contents

  1. Layer 1: Foundation Model
  2. Layer 2: Data Operations
  3. Layer 3: Agent Frameworks
  4. Layer 4: Deployment Infrastructure
  5. Layer 5: Evaluation & Observability
  6. Layer 6: Security & Compliance
  7. Layer 7: Agent Ecosystem
  8. Cross-Layer
  9. Blindspot Vectors Checklist

Layer 1: Foundation Model

Layer 2: Data Operations

Layer 3: Agent Frameworks

Layer 4: Deployment Infrastructure

Layer 5: Evaluation & Observability

Layer 6: Security & Compliance

Layer 7: Agent Ecosystem

Cross-Layer

Blindspot Vectors Checklist

These vectors represent gaps not adequately covered by the core ASI taxonomy (T1-T15) or the extended catalog (T16-T47). Review these after completing per-layer and cross-layer checklists to ensure emerging and non-obvious attack surfaces are addressed.


Previous Up Next
07 - Templates 00 - Overview 09 - Mitigation Catalog

Attribution: OWASP GenAI Security Project - Multi-Agentic System Threat Modelling Guide. Licensed under CC BY-SA 4.0.