threat-modeling-ics
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a controlled workflow for industrial threat modeling, utilizing industry-standard frameworks (STRIDE, MITRE ATT&CK for ICS, CVSS v4.0, CWE) and requiring technical justifications for all analyst actions.
- [SAFE]: All external references target reputable technology and security organizations, including Microsoft (Azure/Learn), MITRE (ATT&CK/CWE), FIRST (CVSS), and the German Federal Office for Information Security (BSI).
- [SAFE]: The workflow includes explicit 'blocking gates' that pause execution to ensure human oversight during architecture validation and input verification.
- [SAFE]: No malicious code, obfuscation, or unauthorized network operations were identified within the skill instructions or metadata.
Audit Metadata