bobmatnyc

threat-modeling

"Threat modeling workflow for software systems: scope, data flow diagrams, STRIDE analysis, risk scoring, and turning mitigations into backlog and tests"

bobmatnyc 49 17 Updated 5mo ago

Resources

2
GitHub

Install

npx skillscat add bobmatnyc/claude-mpm-skills/threat-modeling

Install via the SkillsCat registry.

SKILL.md

Threat Modeling (STRIDE)

Outputs (Definition of Done)

Produce a data flow diagram, a threat register, and a mitigation plan that becomes tickets and tests.

Load Next (References)

  • references/stride-workshop.md — step-by-step workshop agenda + DFD guidance
  • references/common-threats-and-mitigations.md — threat catalog with mitigations
  • references/templates.md — copy/paste templates for docs and tickets