What problem does it solve?
Current security and compliance frameworks (including NIST 800-53, ISO 27001, and SOC 2) have no controls for RAG-specific attack surfaces such as embedding manipulation, vector store poisoning, retrieval filter bypass, and indirect prompt injection via retrieved documents. These are demonstrated, real-world threats in mid-2026 that leave RAG pipelines completely unaddressed by standard security audits and compliance requirements.
Core Features & Use Cases
- Attack Class Mapping: Maps 5 core RAG attack classes to MITRE ATLAS v2026.06 and MITRE ATT&CK v19.1 TTPs for consistent threat tracking.
- Compliance Gap Analysis: Explicitly flags which controls in major global frameworks (ISO, NIST, EU AI Act, UK CAF, AU Essential Eight) fail to cover RAG-specific risks, with clear explanations of why existing controls are insufficient.
- Posture Scoring: Provides a structured 0-80 point scoring methodology to quantify RAG pipeline security maturity across 8 key control areas.
- Defensive Mapping: Links identified RAG risks to D3FEND v1.3.0+ defensive countermeasures for actionable remediation.
- Use Case: A security team assessing a customer support RAG system can use this skill to identify vector store poisoning risks, validate that retrieval filters are applied pre-similarity to prevent bypass, and generate auditor-ready documentation of compliance gaps for RAG-specific threats.
Quick Start
Use the rag-pipeline-security skill to assess the security posture of the internal employee knowledge base RAG system, including mapping identified attack classes to relevant MITRE ATLAS TTPs and documenting compliance framework gaps for the audit team.