Skip to main content

threat-model-author

Author a STRIDE-based threat model (threat-model@1) from an SRS plus accepted ADRs. Enumerates trust boundaries, data flows, threats per STRIDE category (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege), mitigations mapped to OWASP Top 10:2025 (A01-A10) and OWASP ASVS controls. Covers modules/cuo/docs/appendices.md (§13 Software Development Process) §2(d) Architecture security review. Chains naturally into threat-model-audit. Use when user asks to "draft a threat model" or "create the threat model". Do NOT use for "audit existing threat model" (use threat-model-audit instead).

Jump to install

Source facts

Repository
cyberskill-official/cyberos
Last source activity
July 20, 2026 at 02:42
Detected SKILL.md language
English
Stars
60
Forks
2

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.