sk Skill · scadastrangelove
threat-model
Build a threat model for a target codebase. Three modes: "interview" walks an application owner through the four-question framework and produces a threat model from their answers; "bootstrap" derives a threat model from the code plus past vulnerabilities (CVEs, git history, pentest reports) when no owner is available; "bootstrap-then-interview" chains the two when both owner and codebase are present. All write…
Open on skills.sh ↗read 2026-09-15
- installs 8w
- 0
- 30-day movement
- starts with the next reading
- Related entries
- 7
- Connections
- 12
Python
- Host repository
- scadastrangelove/rust-in-peace
- Allowed tools
- Read, Glob, Bash(python3 .claude/skills/_lib/checkpoint.py:*), Grep, Write, Bash(git:*), Bash(gh api:*), Bash(find:*), Bash(ls:*), Bash(cat:*), AskUserQuestion, Task
- Host stars
- 19
- Host language
- Python