OWASP published a Top 10 for Agentic Applications in December 2025 — ten risks, numbered ASI01 through ASI10. Most write-ups I found target platform teams. I don't have one. I have a laptop, six agents (Claude Code, Cursor, OpenClaw, DSH and a couple of my own scripts), 14 MCP servers — and a habit of giving them shell access. So here is each item translated into what I actually changed. ASI01 — Agent Goal Hijack Prompt injection, but the version that matters in practice is in...