Askiva — agentic threat model
Askiva exhibits moderate-to-high agentic risk due to its high autonomy in scheduling and conducting live, multi-lingual interviews with external participants, which exposes it to prompt injection and PII/data exfiltration risks.
OWASP AIVSS score rationale
| Autonomy of Action | 0.80 | |
| Goal-Driven Planning | 0.70 | |
| Self-Modification | 0.10 | |
| Dynamic Tool Use | 0.60 | |
| Persistent Memory | 0.40 | |
| Contextual Awareness | 0.70 | |
| Dynamic Identity | 0.20 | |
| Multi-Agent Interactions | 0.10 | |
| Non-Determinism | 0.80 | |
| Opacity & Reflexivity | 0.50 |
Scored with the canonical OWASP AIVSS formula (AIVSS calculator reference); agentic risk factors estimated from the agent’s described capabilities.
MAESTRO 7-layer threat model
Per-layer threats for this agent. Layers tagged “not certain from listing” are general, caveated commentary where the public description didn’t pin that layer.
Not certain from the listing — the underlying foundation models are not specified. However, conducting live, unstructured interviews in 10+ languages exposes the model to adversarial prompt injection by participants, potentially leading to mis-aligned outputs, brand damage, or system reprogramming during the session.
Not certain from the listing — the storage mechanism for participant lists, transcripts, and recordings is not detailed. The primary threat is data exfiltration of sensitive participant PII and proprietary research insights, as well as potential knowledge-base poisoning if summaries are fed back into a shared repository.
Not certain from the listing — the orchestration framework is proprietary. Key threats include insecure tool integration with scheduling and email systems, and memory poisoning if a malicious participant's input influences the agent's behavior in subsequent interviews.
Not certain from the listing — hosting, sandboxing, and infrastructure security details are omitted. Threats include unauthorized access to the hosting environment, which could compromise API keys used for scheduling, email dispatch, and transcription services.
Not certain from the listing — there is no mention of real-time guardrails, logging, or observability tools to monitor live interviews. This creates a blind spot where abusive, manipulative, or off-topic behavior by the agent or participant may go undetected until after the interview is complete.
Not certain from the listing — compliance certifications (such as GDPR, which is highly relevant for recording and storing participant interviews) and access controls are not mentioned, representing a significant regulatory and privacy risk.
Not certain from the listing — there is no indication of multi-agent coordination or integration with an external agent ecosystem, meaning cascading agent-to-agent failures are currently a low risk.
MAESTRO — the 7-layer agentic threat-modeling framework (Cloud Security Alliance / Ken Huang).