threat-model
Pass
Audited by Gen Agent Trust Hub on Jun 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of instructional content and markdown templates for threat modeling methodologies (STRIDE, DREAD, PASTA). It does not contain any executable scripts, command-line instructions, or automated tools.
- [SAFE]: All external links provided point to well-known and trusted security industry resources, specifically MITRE ATT&CK (mitre.org and github.io) and the NIST National Vulnerability Database (nvd.nist.gov). These are used correctly as reference materials for the threat modeling process.
- [SAFE]: The workflow is entirely manual/human-driven, requiring the user to provide system descriptions and fill out templates based on their own knowledge of a target system's architecture.
- [SAFE]: There are no signs of prompt injection, data exfiltration, or obfuscation. The skill adheres to best practices for structured security documentation.
Audit Metadata