01 · Why OWASP
A description of what an agent can do should not belong to the company that sells it.
An ABP is a written description, for one agent in one deployment, of everything it can do (the grant), what it was authorised to do (the mandate), the gap between the two (the delta), and what actually stands in the way (the barrier). It carries no score. RiskMandate built it, published it at abp.sgit.ai under CC BY 4.0 and the code under Apache-2.0, and sells services on it. That is a reasonable way to start something and a poor way to make it a shared language: a format the buyer, the vendor, the reviewer and the insurer all write in has to be one none of them owns.
OWASP is where the application-security community already keeps shared language of that kind: the Top 10s, ASVS, SAMM, CycloneDX, and now, in the GenAI Security Project, the Agentic Top 10 and the Agent Control Standard. Many OWASP projects are exactly what a behaviour policy records as a barrier: something enforced above the agent, out of its reach. A project that describes agents in a grammar those controls can be mapped onto adds to them rather than competing with them. And it gets what one company cannot give it: people outside RiskMandate who will try to break the model.
In a way it’s a simple move because everything is already published and they have Creative Commons, right? You know, the code is freely available. But I think this is going to help a lot the project and it’s also, I think, it’s a great OWASP project from a community point of view.Dinis Cruz, voice note, 8 October 2026 (transcribed; D30 in the brief register)