OpenAI

Security Threat Model

Repository-grounded threat modeling that enumerates trust boundaries, assets, attacker capabilities, abuse paths, and mitigations, and writes a concise Markdown threat model. Trigger only when the user explicitly asks to threat model a codebase or path, enumerate threats/abuse paths, or perform AppSec threat modeling. Do not trigger for general architecture summaries, code review, or non-security design work.

27.8k stars
openai/skillsskills/.curated/security-threat-modelFebruary 2, 2026
View on GitHub

Install command

python "$CODEX_HOME/skills/.system/skill-installer/scripts/install-skill-from-github.py" --repo openai/skills --path skills/.curated/security-threat-model

DIRA Agent

skills / openai-openai-skills-security-threat…

Hey! I'm Dira. Tell me the task, team, budget, or agent you're considering, and I'll help you narrow it to a practical next step.