SecurityApache-2.0

Security threat model

by OpenAI (opens in a new tab) openai/skills

Writes a threat model grounded in your repo: trust boundaries, assets and abuse paths.

Installation

Skills CLI

Skills CLI command
npx skills@latest add openai/skills --skill security-threat-model

Requires Node.js and npm. Choose your agents in the installer; add -g for a global installation.

Fieldbook review

Reviewed 27 Sept 2026

Only runs when you ask for a threat model by name, so it will not fire on ordinary work.

  • LicenceApache-2.0
  • FrontmatterValid name and description
  • Risky patternsNone found
  • Size82 lines
  • Last checked27 Sept 2026 · 1283c0dd62a8104d9edda4583569b5d8510b4ddaa45120687c999250fd96bad2

What it can touch

  • Writes docs

    Creates or updates documents such as specs, plans or ADRs.

Read the source

Fieldbook links to the original instead of copying it, so you always read the version you install.

skills/.curated/security-threat-model/SKILL.md on GitHub (opens in a new tab)