All 52 threats in full: description, impact, example, mitigations and verified sources.
To the catalogueThe catalogue seen from the perspective of a concrete system type
Choose the system type and the architectural characteristics that apply. The grid shows, for each of the 52 threats, whether it is always to consider for this profile, needs review in the individual case, or remains atypical for this system type. A characteristic you set can put an atypical threat back up for review.
Who it is for: For architecture, product ownership and anyone assessing a concrete system
System context
Systems with tool use, memory, planning steps, or autonomous execution need a stronger focus on agency, tool safety, session context, and human oversight.
-
Supply Chain and Provenance2/3
-
Model and Training Data Manipulation1/4
-
Prompt Attacks and Guardrail Evasion4/5
-
Attacks on the Running Model and Service5/7
-
Privacy and Data Leakage4/4
-
Application and Integration Security7/7
-
Harmful Content2/9
-
Malicious Use for Attacks, Fraud and Disinformation3/4
-
Agentic and Autonomous AI5/5
-
Reliability and Responsible Use4/4
Review questions for this system type
- Which tools can the agent invoke and with which privileges?
- Which actions require explicit human approval?
- Can external or stored context influence future agent decisions?
The assignment is a working basis for the assessment, not a clearance. “Atypical for this profile” does not mean “ruled out”: the professional decision still rests with the person carrying out the assessment.
Versatile AI Risk Assessment is an aid for structuring AI risks and making them transparent. It does not replace legal or professional advice and makes no binding decisions.
The same data, a different question
Which part of the catalogue applies to a concrete system boundary and what changes on a rebuild.
- Threat pathway How does harm arise?
- Lifecycle When does which risk arise?
- Threat comparison Where does the line between two run?
- Effect matrix How and where do mitigations take effect?
- Ownership Who has to act?
- Framework mappings Where is this anchored professionally and legally?
- Coverage gaps What does my framework not reach?
- Evidence base What is this based on?
From the analysis to the assessment
Four short sections along the EU AI Act for a first, non‑binding orientation of your system.
To the quick checkThe full assessment with system context, threat selection and evidence tracking, free of charge in the browser.
To the live demo