trailofbits avatar

openai-security-threat-model

v1.0.0community332 stars

Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. Trigger only when the user explicitly asks to threat model a codebase or path, enumerate threats/abuse paths, or perform AppSec threat modeling. Do not trigger for general architecture summaries, code review, or non-security design work. Originally from OpenAI's curated skills catalog.

Install

/plugin install openai-security-threat-model@trailofbits-skills-curated
AI writes the code. CodeRabbit catches the slop.
Try For Free
Make coding agent sessions - Searchable, Shareable, Vendor-neutral & Scored.
Try For Free
Your agent targets a perfect 10 Code Health score. Deterministic. Every commit.
Try For Free
Integrate web data into your AI product. One API to scrape website & brand data.
Get API Key Now
belt cli automatically finds the best tools and skills for your agent. image, video, music, tts...
one prompt install
create and run specialised agents in minutes
build now
Plug Mailtrap into your AI workflow and let it handle the email.
Connect Mailtrap MCP
Agent, run crypto. Access onchain data & trade routes via 1inch.
Install now