Threat Model Generation Skill

Official

Generate AWS IaC threat models in minutes

AuthorAgentic-AI-Risk-Mitigation
Version1.0.0
Installs0

System Documentation

What problem does it solve?

It helps you identify and document realistic security threats in AWS infrastructure described by Infrastructure-as-Code (IaC), so you can reason about risk before deployment and produce structured, framework-aligned threat models.

Core Features & Use Cases

  • Framework-aligned threat modeling: Produces threats mapped to STRIDE, OWASP Top 10 (2021), MITRE ATT&CK, and CWE for consistent security analysis and reporting.
  • Actionable, structured outputs: Generates a JSON threat model containing affected components, impact (CIA), likelihood, attacker/defender perspectives, and concrete recommendations.
  • IaC-to-model workflow: Reads CDK, CloudFormation, or Terraform code, analyzes it with an LLM, and saves results to a standardized threat-model.json format for downstream evaluation.

Quick Start

Run the skill with your IaC file path to generate a threat-model.json containing multiple AWS threats with framework mappings and mitigation recommendations.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: Threat Model Generation Skill
Download link: https://github.com/Agentic-AI-Risk-Mitigation/iac-tm-experiments/archive/main.zip#threat-model-generation-skill

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.