Now liveThe Skillselion MCP - thousands of ranked skills, loaded into your agent mid-task. No install.Get it →
dralgorhythm avatar

Threat Modeling

  • 75 installs
  • 111 repo stars
  • Updated July 24, 2026
  • dralgorhythm/claude-agentic-framework

Guides a solo builder through structured threat modeling of a system before shipping, surfacing attack surfaces, trust boundaries and mitigations.

About

A Claude Code skill that walks you through threat modeling a system: it identifies assets, trust boundaries and attack surfaces, enumerates likely threats, and proposes concrete mitigations. A solo builder reaches for it before shipping a feature that handles auth, payments or sensitive data, to catch security gaps while they are still cheap to fix.

  • Structured threat-model walkthrough
  • Identifies trust boundaries and attack surfaces
  • Recommends concrete mitigations
  • STRIDE-style risk enumeration

Threat Modeling by the numbers

  • 75 all-time installs (skills.sh)
  • Ranked #1,145 of 2,203 Security skills by installs in the Skillselion catalog
  • Data as of Aug 3, 2026 (Skillselion catalog sync)
npx skills add https://github.com/dralgorhythm/claude-agentic-framework --skill threat-modeling

Add your badge

Show developers this skill is listed on Skillselion. Paste this into your README.

Listed on Skillselion
Installs75
repo stars111
Last updatedJuly 24, 2026
Repositorydralgorhythm/claude-agentic-framework

What it does

Guides a solo builder through structured threat modeling of a system before shipping, surfacing attack surfaces, trust boundaries and mitigations.

Who is it for?

Reviewing a design for security risks before shipping

Skip if: Automated penetration testing

Files

SKILL.mdMarkdownGitHub ↗

Threat Modeling

MCP Tools

Sequential Thinking (systematic analysis): Use for structured STRIDE analysis: 1. Enumerate each threat category systematically 2. Consider attack vectors step-by-step 3. Evaluate mitigations with pros/cons 4. Document reasoning for risk acceptance

Why Threat Model?

  • Identify threats early
  • Prioritize security efforts
  • Document security assumptions
  • Guide security testing

STRIDE Methodology

Use Sequential Thinking to work through each category:

S - Spoofing

Pretending to be someone else.

  • Example: Forged authentication tokens
  • Mitigation: Strong authentication, MFA

T - Tampering

Modifying data without authorization.

  • Example: Changing request parameters
  • Mitigation: Integrity checks, signatures
  • Trace with Grep: Find all input handlers

R - Repudiation

Denying an action occurred.

  • Example: User denies making transaction
  • Mitigation: Audit logging, non-repudiation

I - Information Disclosure

Exposing confidential data.

  • Example: API returns sensitive fields
  • Mitigation: Encryption, access controls
  • Trace with Grep: Find data return points

D - Denial of Service

Making system unavailable.

  • Example: Resource exhaustion attack
  • Mitigation: Rate limiting, auto-scaling

E - Elevation of Privilege

Gaining unauthorized access.

  • Example: User becomes admin
  • Mitigation: Least privilege, input validation
  • Trace with Grep: Find authorization checks

Threat Modeling Process

1. Decompose System

  • Use Grep and Glob to identify entry points
  • Draw data flow diagrams
  • Identify trust boundaries

2. Identify Threats

Use Sequential Thinking to systematically ask STRIDE questions for each component.

3. Trace Data Flow

Use Grep to trace:

  • User input → processing → storage
  • Authentication token flow
  • Sensitive data paths

4. Rate Threats

Use DREAD or CVSS scoring:

  • Damage potential
  • Reproducibility
  • Exploitability
  • Affected users
  • Discoverability

5. Mitigate

  • Avoid: Remove the feature
  • Transfer: Use third-party
  • Mitigate: Add controls
  • Accept: Document risk (use Sequential Thinking to justify)

Threat Model Document

## Asset: User Database

### Threats
| Threat | Type | Likelihood | Impact | Risk |
|--------|------|------------|--------|------|
| SQL Injection | Tampering | Medium | High | High |
| Data Breach | Info Disclosure | Low | Critical | High |

### Mitigations
1. Parameterized queries
2. Encryption at rest
3. Access logging

Related skills

Securityauditappsec

This week in AI coding

Five minutes, every Monday - the tools, releases and tactics for developers.

unsubscribe anytime.