Threat-model agentic tooling — MCP/tool abuse, hook/prompt injection, remote control surfaces, and secret leakage. Use during security reviews or when adding features that expose the system to AI agents or remote callers.
Threat-model agentic tooling — MCP/tool abuse, hook/prompt injection, remote control surfaces, and secret leakage. Use during security reviews or when adding features that expose the system to AI agents or remote callers.
Threat modeling (agentic tools)
Use this skill when
Security reviews, or new features touching MCP servers, tools, hooks, or any remote-control surface
Writing or updating security docs
Running /security-review or reviewing compact MCP dispatch actions
Procedure
Read .agent/SAFETY.md and backend docs/technical/MCP_SEARCH_DISPATCH.md.
Enumerate assets: secrets/tokens, credentials, workspace files, agent sessions, PostgreSQL data,
Electron IPC surfaces, any data the tools can read or mutate.