security-threat-model
Audited by Runlayer on Feb 22, 2026
Malicious tool definition detected
Tool: LICENSE.txt [1/2] Description: Apache License Version 2.0, January 2004 http://www.apache.org/licenses/ TERMS AND CONDITIONS FOR USE, REPRODUCTION, AND DISTRIBUTION 1.
Tool: LICENSE.txt [2/2] Description: this License.
Malicious tool definition detected
Tool: SKILL.md Description: --- name: "security-threat-model" description: "Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. Trigger only when the user explicitly asks to threat model a codebase or path, enumerate threats/abuse paths, or perform AppSec threat modeling.
Malicious tool definition detected
Tool: agents/openai.yaml Description: interface:
Malicious tool definition detected
Tool: references/prompt-template.md [1/2] Description: # Threat Modeling Prompt Template for LLMs This reference provides a disciplined, repo-grounded prompt that produces AppSec-usable threat models. Use it when you need a reliable output contract and a consistent process to assemble the threat model output ## System prompt Use this as a stable system prompt: ````text You are a senior application security engineer producing a threat model that will be read by other AppSec engineers. Primary obj
Malicious tool definition detected
Tool: references/security-controls-and-assets.md Description: # Security Controls and Asset Categories Use this as a lightweight checklist to keep outputs consistent across teams.