sail
为AI产品提供落地且可操作的安全路线图和审计要点
按SAIL V2框架评估与加固AI系统的安全生命周期
按 SAIL V2 框架评估和加固 AI 系统与 agent 的安全生命周期:做风险评估、制定安全路线图、生成合规检查表(如 ISO/IEC 42001、EU AI Act、OWASP LLM 等),并帮你优先控制项、评估供应商或保护 agent 身份与服务器。适合在做 AI 产品、agent 功能或合规审查时用,侧重可执行、目录化的安全建议。
▸ 展开 SKILL.md 英文原文
Apply the SAIL (Secure AI Lifecycle) V2 framework by Pillar Security to secure AI applications and agents. Use this skill whenever the user asks about AI or agent security — assessing an AI system or agent architecture for risks, building an AI security roadmap or maturity assessment, writing or reviewing an AI security policy, creating compliance checklists (ISO/IEC 42001, EU AI Act, OWASP LLM/Agentic, DASF, AIUC-1), prioritizing AI security controls, evaluating AI vendors or tools (RFPs, security questionnaires), securing MCP servers, agent identities, or LLM apps, or asking what "SAIL" or a "SAIL ID" (e.g., SAIL 5.17) means. Also use it when the user is building agentic features and wants to know which security risks apply — even if they never say "SAIL".
帮我安装这个 skill:https://raw.githubusercontent.com/pillar-labs/sail-skill/main/sail/skills/sail/SKILL.mdcurl -fsSL "https://raw.githubusercontent.com/pillar-labs/sail-skill/main/sail/skills/sail/SKILL.md"# SAIL V2 — Secure AI Lifecycle Framework SAIL is Pillar Security's framework for building, deploying, and operating AI systems and agents securely. It is a working tool, not a reading exercise: users bring real systems, policies, and compliance obligations, and expect concrete, catalog-grounded answers. Whether they are writing their first AI policy or already operating hundreds of agents, SAIL is used to: 1. **Build an AI security roadmap** — walk the seven phases in order, assess coverage at each; the gaps, sequenced by phase, become the roadmap. 2. **Assess AI security maturity** — score each relevant risk (unaddressed / partially mitigated / mitigated with evidence) into a per-phase m