Skip to main content
Voight relates to the OWASP Top 10 for LLM Applications (v2.0) from two angles, and the full document addresses both honestly: how Voight’s own platform is secured, and how Voight helps you address each risk in your own LLM application.

Quick reference

FieldValue
FrameworkOWASP Top 10 for LLM Applications, v2.0
Voight’s own roleNot an LLM application today; observability platform
Strongest alignmentsLLM02 (Sensitive Info Disclosure), LLM10 (Unbounded Consumption)
Honest gapsLLM04 (Data/Model Poisoning), LLM08 (Vector/Embedding)
PostureDetection & monitoring — not inline prevention
Security Contactteam@voight.xyz
Document Version1.0 — May 2026

Download the full document

Voight — OWASP LLM Top 10 Alignment

19 pages · Version 1.0 · May 2026A risk-by-risk map of all ten OWASP LLM risks, Voight’s own security posture, a coverage matrix, and an explicit statement of what Voight does not do.

The honest framing

Two principles run through the document:
  1. Observability is detection and monitoring, not prevention. For most risks, Voight helps you see and investigate a problem — it does not sit inline to block it. Where this matters, the document says so.
  2. No claimed coverage we don’t have. Two of the ten risks fall outside what an observability platform addresses, because Voight neither trains models nor manages vector stores. The document states this plainly rather than stretch a weak angle.

Coverage at a glance

CodeRiskVoight alignment
LLM01Prompt InjectionStrong (detective)
LLM02Sensitive Information DisclosureStrongest
LLM03Supply ChainModerate
LLM04Data and Model PoisoningLimited
LLM05Improper Output HandlingStrong (detective)
LLM06Excessive AgencyStrong (detective)
LLM07System Prompt LeakageStrong (telemetry)
LLM08Vector and Embedding WeaknessesLimited
LLM09MisinformationModerate
LLM10Unbounded ConsumptionStrong

Voight’s own posture

Today, Voight does not operate a large language model within its own product — it is the observability platform that receives LLM telemetry. The document records Voight’s platform security baseline (shared with the GDPR documentation) and a forward commitment: when Voight’s roadmap LLM features (Smart Trace, Prompt Scorer, Debug Agent) reach production, this document will be re-versioned to assess each against the relevant risks, holding our own features to the same standard we help our customers meet.

See also