STRIDE Threat Model
The base: STRIDE against any system you can describe or document.
Threats enumerated per component against a data-flow diagram you confirm, scored on impact and likelihood, then mapped to the controls and regimes that bear on them.
Ansvar is a gateway for the AI assistant your team already uses — Claude, Microsoft Copilot, any MCP client. Connect it and your agent runs the workflow; the server enforces the stages and fetches every citation.
The run draws the system before it analyses it: components, data flows, trust boundaries and assets, rendered as a diagram you approve. Six STRIDE specialists then work the six categories — in parallel where your client supports it — and merge into one threat list with a coverage matrix, which you review again: add what is missing, drop the false positives, challenge a rating. Only after that does scoring happen, on impact and likelihood, with a CVSS v4 vector where one applies. Threats then map to controls and to the regimes the run adjudicates. On Team and Company a control-investment simulation ranks what to buy first; below that the run says so and finishes without it. The OT and drone variants change the framing and the regimes, not the method.
STRIDE Threat Model
The base: STRIDE against any system you can describe or document.
OT / ICS Threat Model (STRIDE, zones-and-conduits)
Plant and ICS, framed on IEC 62443 zones and conduits.
UAS / Drone Threat Model (STRIDE, UAS-scoped)
UAS platforms — the C2 link, ground control and the data chain — under Reg (EU) 2019/945 and 2019/947.
Threat sources ground the enrichment stage: ATT&CK and ATLAS are free, and CWE, CAPEC and D3FEND open at Premium. Where no served source grounds a mapping, the run marks it unresolved rather than filling it in.
components, flows, trust boundaries and assets, rendered as a diagram you confirm before any analysis runs
optional; on Team and above the run grounds itself in your own architecture documents
six specialists work the six categories, in parallel where your client supports it, and merge into one threat list with a coverage matrix
you see every threat before it is scored — add, remove, or challenge a rating
each threat enriched from served sources, deduplicated, then scored on impact and likelihood
threats mapped to controls, and to the regimes the run adjudicates — the applicability check itself is Team and above
a control-investment simulation ranks what to buy first, on Team and Company; below that the run records the stage as not applicable and carries on
the threat register — structured for your agent, rendered for your auditor
Using Ansvar, build a STRIDE threat model of our payments API. Start from a data-flow diagram and show me the threat list before you score anything.
Using Ansvar, run an OT threat model for our bottling line on IEC 62443 zones and conduits, and map each mitigation to a control.
A prompt starts one run. The skill is the same guidance installed once — the run loop, the evidence and citation rules, and the starters — so your agent works this way in every conversation, not only the ones you remember to paste into. Install it as a skill in Claude or Claude Code, or paste the same file into Microsoft Copilot or a custom GPT's instructions.
Threat Modelling · version 1.0.4 · SKILL.md · ZIP · how to install it
Free gets one workflow run a month and Solo two, spendable on the base STRIDE threat model against a system you describe, and a Free or Solo run can also return a render carrying a self-asserted banner. Premium adds the OT/ICS and drone variants on five runs a month, along with the CWE, CAPEC and D3FEND corpora the enrichment stage draws on. Team and Company run them against your own architecture documents, add unwatermarked HTML, PDF and DOCX exports, and unlock the applicability check and control-investment simulation the last two stages use. Run allowances and what each tier adds live on the pricing page.
Every workflow here is also an expert-run service: we run it against your systems, review the output as practitioners, and hand over the finished deliverable. See the services page for how engagements work, or contact us to scope one.
Related: TARA workflows · DPIA workflows · Worked STRIDE run · LINDDUN privacy model · Industrial & OT sector · Drone & UAS sector · Control library · Workflow docs · Have us run it
Connect the AI client you already use and ask your first cited question — Free, Solo, Premium and Team are self-serve.