omh-application-threat-model
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a defensive security methodology for modeling application threats without introducing executable risks.
- [SAFE]: Explicit safety rules in the skill body prohibit the agent from generating working exploit code, payloads, or runnable attack scripts.
- [SAFE]: Data protection instructions are included to prevent the printing of secrets, tokens, keys, or live customer records during the modeling process.
- [SAFE]: The skill correctly scopes its analysis to external applications and explicitly directs the agent to a different workflow for reviewing its own runtime security surface, preventing confusion of security contexts.
Audit Metadata