Skip to main content

security-threat-model

Build concise repository-grounded threat models covering assets, boundaries, attacker capabilities, abuse paths, and mitigations.

Ir para a instalação

Informações da origem

Repositório
Calvin-Corbett/thomas
Última atividade na origem
9 de setembro de 2026 às 02:49
Idioma detectado do SKILL.md
inglês
Estrelas
4
Forks
0

Opções de instalação

Por padrão, está selecionado o prompt que primeiro revisa a origem. Você pode mudar para um comando direto ou baixar uma cópia local.

Revise os arquivos de origem

Leia o SKILL.md e os arquivos complementares exibidos pelo SkillsMP antes de decidir se vai instalar.

Exibindo SKILL.md

SKILL.md
Instruções da origem · Visualização somente leitura
name
security-threat-model
description
Build concise repository-grounded threat models covering assets, boundaries, attacker capabilities, abuse paths, and mitigations.
# Security Threat Model Use this skill when the user explicitly asks for threat modeling, abuse-path analysis, or AppSec-oriented design review. ## Workflow 1. Define the system boundary, assets, and trust assumptions. 2. Enumerate attacker capabilities and likely abuse paths grounded in the actual architecture. 3. Identify mitigations, detection gaps, and residual risk. 4. Write the model in a concise structure that can drive implementation decisions. 5. Separate confirmed architecture facts from assumptions that need validation. ## Rules - Anchor the model in the real repo or system rather than abstract templates. - Keep abuse paths concrete enough to be actionable.
Ver no GitHub