threat-modeling-framework
About
This Claude Skill performs STRIDE threat modeling to analyze security risks and create mitigation plans. Use it during design reviews to systematically identify threats like spoofing or data exfiltration in your system architecture. It outputs actionable security artifacts and validation steps based on your system's context and constraints.
Quick Install
Claude Code
Recommendednpx skills add cornmanwtf/ABANG-COLEK -a claude-code/plugin add https://github.com/cornmanwtf/ABANG-COLEKgit clone https://github.com/cornmanwtf/ABANG-COLEK.git ~/.claude/skills/threat-modeling-frameworkCopy and paste this command in Claude Code to install this skill
GitHub Repository
Related Skills
data-privacy-guardian
OtherThis skill helps developers implement data privacy measures by detecting PII, masking sensitive data, and managing consent or encryption. Use it when designing or updating systems that require security and compliance with data protection standards. It provides structured plans and artifacts to ensure proper handling of private information.
container-security-scanner
OtherThis Claude Skill scans container images and runtime environments for CVEs and policy violations. It helps developers address security and compliance requirements during design and implementation. Use it when you need to produce security plans, configurations, and validation steps for containerized systems.
access-control-matrix
OtherThis skill helps developers design RBAC/ABAC policies and permission boundaries for security and compliance. It guides you through clarifying requirements, reviewing system context, and selecting appropriate patterns to produce implementation plans and artifacts. Use it when you need to establish or audit access controls within a defined architecture and stack.
api-security-enforcer
OtherThe `api-security-enforcer` skill helps developers design and implement core API security controls. It provides a structured process to apply rate limiting, input validation, and injection defenses within a given system's architecture and constraints. Use this skill when planning or reviewing security measures for API endpoints to ensure compliance and mitigate common threats.
