threat-modeling
Identifies what can go wrong, security-wise, in a design before or while it is built: what is being protected, where the trust boundaries are, which threats apply at each and what mitigates them. Use when a change adds a component, interface, data flow, integration or new kind of sensitive data, or when asked for a threat model.
Pinned to revision d011b72d98a2, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/threat-modeling/SKILL.md
- skills/threat-modeling/examples/threat-model.md
- skills/threat-modeling/references/stride.md
Every link opens the file at its source, pinned to the revision this page describes.