Skip to main content

threat-modeling

Threat model, security audit, find vulnerabilities, check security of my app, risk assessment, penetration test prep, analyze attack surface, what could an attacker exploit. Use this skill whenever a user wants holistic security analysis of a codebase, application, or project. MUST be invoked instead of analyzing security yourself โ€” it runs a specialized 8-phase STRIDE workflow producing professional deliverables you cannot generate alone: risk assessment reports, DFD diagrams, threat inventories, attack path validation, mitigation plans, and pentest plans. Trigger on: ๅจ่ƒๅปบๆจก, ๅฎ‰ๅ…จ่ฏ„ไผฐ, ๆธ—้€ๆต‹่ฏ•, ๅฎ‰ๅ…จๅˆ†ๆž, ๅฎ‰ๅ…จๅฎก่ฎก, ๅฎ‰ๅ…จๆฃ€ๆŸฅ, ้ฃŽ้™ฉ่ฏ„ไผฐ. NOT for: fixing one specific bug, adding one security feature (rate limiting, CORS), writing tests, CI/CD setup, or debugging errors.

Jump to install

Source facts

Repository
OpenAisec/Miko
Last source activity
July 22, 2026 at 16:06
Detected SKILL.md language
English
Stars
541
Forks
27

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.