Threat Modeling

Apply STRIDE with DFD trust boundaries and DREAD scoring. Use when implementing auth, file uploads, payments, webhooks, OAuth/SSO, APIs, multi-tenant, or external integrations — or when asked for a security review, audit, hardening, or vulnerability assessment. Triggers on: "is this secure", "security review", "make this secure", "harden this", "threat model", "STRIDE", "trust boundary". Use for ANY feature that handles user data, accepts external input, or crosses trust boundaries.

pvillega Updated

File contents

pvillega/claude-templates/tree/main/plugins/ct/skills/threat-modeling commit 3201a18a53

Frequently asked questions

npx skillmds@latest add pvillega/threat-modeling