Risk Register

RiskAreaImpactLikelihoodMitigationOwnerReview
Prompt injectionSecurityHighMedSanitize input; sign prompts; allow‑list tools Weekly
HallucinationSafetyMedMedEvaluation sampling; gold standards; refusals Weekly
PII leakageComplianceHighLowData minimization; role‑based access; logs Monthly