Loading...
Loading...
Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. Trigger only when the user explicitly asks to threat model a codebase or path, enumerate threats/abuse paths, or perform AppSec threat modeling. Do not trigger for general architecture summaries, code review, or non-security design work.
npx skill4agent add openai/skills security-threat-modelreferences/prompt-template.mdreferences/prompt-template.mdreferences/prompt-template.md<repo-or-dir-name>-threat-model.mdreferences/prompt-template.mdreferences/security-controls-and-assets.md