AIPSA Flash Cards

150+ practitioner-level cards. All 4 M.A.D.E. pillars.

Covers all credential levels from Associate through Distinguished. Built around the 14 AIPSA assessment domains — concepts, scenarios, and controls.

mapattackdefendevidence

Credential coverage

Associate → Distinguished

Cards span all four AIPSA tiers — score 70–100.

Card types

Concept · Scenario · Control

Structured answer + why + trap + related terms.

Domain model

14 AIPSA assessment domains

Fully aligned with the AIPSA benchmark framework.

Example cards

See what's inside.

attackpractitioner

Prompt Injection & Indirect Instructions

Indirect Prompt Injection

What changes when untrusted content is placed inside the model context?

Answer

Untrusted content can influence model behavior as if it were an instruction.

defendadvanced

RAG Authorization & Retrieval Security

Tenant-Boundary Retrieval

A support copilot retrieves documents before checking whether the user is allowed to access them. The model is told not to reveal unauthorized content. What is the core defense failure?

Answer

Authorization is happening too late.

mapfoundation

Architecture & Trust Boundaries

Trust Boundary Mapping

What should be mapped before testing or hardening an AI product?

Answer

Map actors, data flows, model calls, tools, retrieval paths, providers, logs, and authority transitions.