Threat Modeling

Use when designing a new component, service, or data flow that crosses a trust boundary, holds secrets, processes untrusted input, or has elevated privileges — produces a structured threat model using STRIDE (per-asset categories), LINDDUN (privacy-sensitive), and kill-chain mapping for high-stakes targets. Outputs a concise, decision-grade threat-model artifact callable by forge Step 1 (security/threat-model branch), alf sweeps, and bob WP-acceptance criteria. Trigger on - threat model, STRIDE, LINDDUN, attack surface, kill chain, attacker model, trust boundary, data flow diagram (DFD), security design review, threat enumeration, "what could go wrong", privacy review, GDPR threat model, MITRE ATT&CK mapping.

joogy06 8029628 19.9 KB Updated

File contents

joogy06/agent-foundry/tree/main/skills/threat-modeling commit 80296286fb

Frequently asked questions

npx skillmds@latest add joogy06/threat-modeling