security-requirement-extraction

Derive structured security requirements from threat models and business context.

Updated Feb 3, 2026
One-click install
npx skills add https://github.com/leonardoteodoroo/amino-advanced --skill security-requirement-extraction-leonardoteodoroo
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-requirement-extraction
Source: https://github.com/leonardoteodoroo/amino-advanced/tree/main/.agent/skills/security-requirement-extraction
Command: npx skills add https://github.com/leonardoteodoroo/amino-advanced --skill security-requirement-extraction-leonardoteodoroo

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Derive security requirements from threat models and business context to produce actionable, testable security artifacts.

Core Features & Use Cases

  • Threat-to-requirement translation: Convert threat models into structured, testable requirements.
  • Security user story generation: Turn requirements into actionable user stories for development and security teams.
  • Test case creation & traceability: Generate acceptance criteria and test cases with threat references to support compliance and audits.

Quick Start

Provide a threat description and target to generate a structured set of security requirements.

Frequently Asked Questions about security-requirement-extraction

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I convert threat models into actionable security requirements?

You can convert threat models into actionable security requirements by translating identified threats into structured artifacts categorized by type, domain, and priority, complete with linked acceptance criteria and test cases.

What is threat-to-requirement translation for software projects?

Threat-to-requirement translation is the process of deriving structured, testable security requirements from threat models and business context to produce actionable security artifacts for development teams.

How do I generate security user stories from a risk assessment?

You generate security user stories from a risk assessment by deriving security requirements from threats and transforming them into actionable stories categorized by type, domain, and priority for development and security teams.

Can I create security test cases with traceability for compliance audits?

Yes, you can create security test cases with traceability for compliance audits by generating acceptance criteria and test cases that include direct threat references and structured priority categorization.

Does security requirement extraction work without specific platform dependencies?

Yes, security requirement extraction works without specific platform dependencies because it processes threat descriptions and business context to output structured security artifacts across diverse project environments.

What is the best way to structure security requirements for development teams?

The best way to structure security requirements for development teams is to categorize each requirement by type, domain, and priority while linking them to threats with defined acceptance criteria and test cases.