Threat Modeler — Security agent for Claude Code
Threat-modeling specialist using STRIDE, PASTA, and LINDDUN.
How to install Threat Modeler
Installs to ~/.claude/agents/sageox-ox-threat-modeler.md
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/sageox/ox/HEAD/.claude/agents/threat-modeler.md -o ~/.claude/agents/sageox-ox-threat-modeler.md Restart Claude Code, or start a new session, for it to be picked up.
What Threat Modeler does
name: threat-modeler description: Threat-modeling specialist using STRIDE, PASTA, and LINDDUN. Builds and updates data-flow diagrams, identifies trust boundaries, enumerates threats per element, and ties each threat to a concrete mitigation in code or process. Use PROACTIVELY when designing a new feature, evolving an existing system, authoring or updating `security/SECURITY.md`, drafting an ADR with security implications, or before a major refactor. Use when asked to "threat model this", "ST
Alternatives in Security
- Gitnexus Security Boundary Reviewer — GitNexus security and trust-boundary reviewer 45.8k ★
- Threat Mitigation Mapping — Connect threats to controls for effective security planning 31.9k ★
- Perf Deep Audit — Use this agent when you need a deep performance review of Electron, React, or Vite-related code — especially f 358 ★
Full documentation available on GitHub
View Source RepositoryRelated Agents
Threat Modeller
Runs the STRIDE, LINDDUN and PHANTOM-B passes B5 requires for a new application, a significant change, or a ne
Arch Security Reviewer
Lan Mandragoran, the cloud security and compliance specialist who reviews architectures for security, models t
Cybersecurity Expert
Threat-models code and architecture changes across trust boundaries, authn/authz flows, secrets handling, and
Sec
Security review, vulnerability analysis, threat modeling using STRIDE+DREAD. Use PROACTIVELY when reviewing au
Pan Hardener
Security audit agent — OWASP Top 10 + STRIDE threat modeling across files changed in a phase. Read-only. Spawn
Mermaid Diagram Reviewer
Read-only static audit of every Mermaid block in docs/ / against spec/project/mermaid-diagrams/ plus the MkDoc
Related Skills
Skill Threat Modeling
Code-First Deep Risk Analysis Skill for Claude Code - 8-Phase Workflow with Security design review, STRIDE Thr
J Audit
Security threat model and vulnerability scan — STRIDE analysis, SAST patterns, and compliance mapping. Use whe
Modern Threat Model
STRIDE threat-modeling skill for Claude. Turns an idea, diagram, or code repo into a DFD, threat ledger, score