Agent Threat Model

Threat-model an AI agent deployment against the lethal trifecta — private data, untrusted content, and an exfiltration vector — producing a per-capability matrix, a named architectural fix for every unsafe path, and a pre-launch checklist. Use before shipping an agent, when reviewing MCP server or tool permissions, when the user asks about prompt injection or data exfiltration risk, or when deciding whether an agent's capability surface is safe to expose.

sananthanarayan 398b4f5 7 files · 29.8 KB Updated

File contents

sananthanarayan/skilldrop/tree/main/skills/agent-threat-model commit 398b4f5889

Frequently asked questions

npx skillmds@latest add sananthanarayan/agent-threat-model