threat-modeler

threat-modeler is a skill for Claude Code, Codex from JayRHa/AgentSkills. It costs 132 tokens per session (2,312 once invoked), scanned A, original, MIT.

A security-analysis assistant that uses STRIDE, a framework for finding six types of threats, to examine a system's architecture and data flows. It produces a diagram, risk assessment, and mitigation plan.

In plain words
What is it for?
Use it to model trust boundaries, analyze spoofing, tampering, denial-of-service, data-disclosure, repudiation, and privilege-escalation risks, then prioritize fixes.
Why use it?
It helps teams identify security problems systematically instead of relying on an informal checklist or reviewing isolated components.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/jayrha/agentskills/threat-modeler
Any agent
npx skills add JayRHa/AgentSkills --skill threat-modeler
Clone the repo
git clone --depth 1 https://github.com/JayRHa/AgentSkills

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for threat-modeler

README.md
[![agentmods](https://agentmods.dev/badge/skills/jayrha/agentskills/threat-modeler.svg)](https://agentmods.dev/skills/jayrha/agentskills/threat-modeler)
Your own site
<a href="https://agentmods.dev/skills/jayrha/agentskills/threat-modeler"><img src="https://agentmods.dev/badge/skills/jayrha/agentskills/threat-modeler.svg" alt="Measured on agentmods" height="20"></a>
Per session 132 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 2,312 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00132 $0.02312
Opus 5 $0.00066 $0.01156
Sonnet 5 $0.00026 $0.00462
Haiku 4.5 $0.00013 $0.00231

Measured yesterday against content hash 378cdffdbf43, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

threat-modeler scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

The scan reads SKILL.md. This mod also ships 1 executable file (scripts/threat_report.py), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

threat-modeler/SKILL.md · 129 lines

How it starts

The opening of the file, as written. The whole thing — 129 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Threat Modeler (STRIDE)

Overview

Keywords: STRIDE, threat model, threat modeling, data flow diagram, DFD, trust boundary, attack surface, spoofing, tampering, repudiation, information disclosure, denial of service, elevation of privilege, DREAD, risk rating, mitigation, countermeasure, security review, attacker, asset.

This skill drives a rigorous, repeatable threat-modeling session using the STRIDE methodology popularized by Microsoft's Security Development Lifecycle. It turns an architecture description into:

  1. A data flow diagram (DFD) with trust boundaries.
  2. A per-element threat enumeration mapped to the six STRIDE categories.
  3. A prioritized mitigation plan with risk ratings and concrete countermeasures.

The output is a single threat model document. Threat modeling answers four questions (the Shostack frame): What are we building? What can go wrong? What are we going to do about it? Did we do a good enough job?

Bundled resources:

  • references/stride-catalog.md — STRIDE definitions, the element-to-threat applicability matrix, attacker archetypes, and a large catalog of concrete threats and standard mitigations per category.
  • references/risk-rating.md — DREAD and Likelihood×Impact rating rubrics with scoring tables and prioritization guidance.
  • scripts/threat_report.py — stdlib-only Python tool that ingests a YAML/JSON threat list and emits a sorted Markdown risk register plus summary stats.
  • templates/threat-model.md — the fill-in document the skill produces.
  • examples/url-shortener.md — a complete worked example (input architecture → DFD → threats → mitigations).

Workflow

Follow these steps in order. Do not skip decomposition — most missed threats come from a sloppy DFD.

1. Scope and gather context

Establish what is in and out of scope. Capture:

  • Assets: what an attacker wants (credentials, PII, money, availability, integrity of records).
  • System purpose and the primary user journeys.
  • Tech stack, deployment model, and external dependencies (third-party APIs, SaaS, queues, databases).
  • Existing controls already in place (auth, TLS, WAF, RBAC).

Read the full file on GitHub · 129 lines

Files

What ships with it

5 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 129 lines · 132 tokens per session scan A 378cdffdbf43

Subscribe to this mod's changes

threat-modeler is a skill published in the GitHub repository JayRHa/AgentSkills (4 stars, last pushed 1mo ago), licensed MIT. It adds 132 tokens to every session and 2,312 once invoked, about $0.0007 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

reverse-engineering-tools

Guide for reverse engineering protected games and anti-cheat components across user mode, kernel mode, and hypervisor-aware environments. Use this skill when analyzing drivers, IOCTL protocols, callback registration, injected-code artifacts, integrity checks, protected binaries, or debugging security-sensitive game…

gmh5225/awesome-game-security · 60 tokens

frontend-patterns

Frontend development patterns for React, Next.js, state management, performance optimization, and UI best practices.

hashgraph-online/awesome-codex-plugins · 24 tokens

browser-qa

自动化视觉测试与 UI 交互验证。部署功能后使用浏览器自动化验证关键页面、核心路径和发布前回归。 当任务需要真实浏览器验证渲染、导航、交互或前端上线风险时使用。.

hashgraph-online/awesome-codex-plugins · 58 tokens

codex-skin-pack-installer

Install Codex themes and Codex skin packs with npx skills. Use this skill when a user wants Codex to find, download, validate, apply, switch, remix, or restore Codex desktop themes such as caishen-readable, caishen-lite, mythic-guardian-noir, global-founder-bright, export-night, or caishen-max. It stages verified…

hashgraph-online/awesome-codex-plugins · 125 tokens

eval-harness

正式评估框架,实现 eval-driven development (EDD) 原则。 用于定义 pass/fail 标准、测量 pass@k 指标、创建回归测试套件。.

hashgraph-online/awesome-codex-plugins · 43 tokens

gitnexus

将 GitNexus 作为受控可选代码智能能力接入,用于 brownfield MCP 查询、影响面分析、 detectchanges、多仓分析和更深代码图谱证据。输出必须回落到 /team- 主链和 artifacts。.

hashgraph-online/awesome-codex-plugins · 58 tokens