#appsec#threat-modeling#security#risk#codebase

Security Threat Model

Independent PiSkill directory guide. The original skill remains hosted by OpenAI Skills.

What is Security Threat Model?

Produces repository-grounded application-security threat models by mapping assets, trust boundaries, attacker capabilities, abuse paths, and practical mitigations.

What does Security Threat Model do?

Security Threat Model is an OpenAI skill for producing a repository-grounded application-security threat model. It identifies the assets worth protecting, trust boundaries, attacker capabilities, exposed surfaces, credible abuse paths and practical mitigations based on how the codebase is actually structured.

Who is Security Threat Model best for?

  • Security reviews before a major release
  • Developers threat-modeling a new service or feature
  • Teams reviewing trust boundaries and sensitive data flows
  • Repositories that need a concise AppSec threat-model document

Common use cases

  • Map assets and trust boundaries in a codebase
  • Identify realistic attacker entry points and abuse paths
  • Prioritize mitigations against repository-specific threats
  • Document residual risks and assumptions for engineering review

How does Security Threat Model work?

The skill scopes the requested repository or path, inspects architecture and data flows, identifies assets and boundaries, models plausible attacker capabilities, enumerates abuse paths and maps each meaningful threat to concrete mitigations. The output is a concise Markdown threat model rather than a generic security checklist.

Key benefits

  • Keeps threats tied to the real repository
  • Separates assets, boundaries, attackers and abuse paths
  • Produces actionable mitigations rather than vague warnings
  • Creates a reviewable artifact for engineering and security teams

Things to know

  • A codebase review cannot observe every production control or runtime dependency
  • Threat likelihood and business impact may require stakeholder input
  • It does not replace penetration testing or specialist security assessment

Compatible tools

OpenAI Codex

Frequently asked questions

What does the Security Threat Model skill produce?
It produces a repository-specific threat model covering assets, trust boundaries, attacker capabilities, abuse paths, mitigations and residual risks.
How is this different from a normal code review?
A code review focuses on implementation issues; threat modeling asks how an attacker could cross trust boundaries, abuse capabilities or compromise important assets.
← Back to Skills Directory