Skillsign Threat Modeling

This skill provides threat modeling frameworks for signing specifications using STRIDE and attack trees. Use when analyzing supply chain compromise, substitution attacks, sidecar rollback, verification bypass, policy weakening, downgrade attacks, TOCTOU exploitation, temporal attack vectors, or signer impersonation paths. Do NOT use for general application threat modeling unrelated to signing systems.

bruk-io Updated

File contents

bruk-io/skillsign/tree/main/plugins/security/skills/skillsign-threat-modeling commit e2d53f6b39

Frequently asked questions

npx skillmds@latest add bruk-io/skillsign-threat-modeling