Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders.
86
Quality
81%
Does it follow best practices?
Impact
98%
1.20xAverage score across 3 eval scenarios
Passed
No known issues
AND/OR tree structure with leaf annotation
OR node usage
100%
100%
AND node usage
100%
100%
Leaf cost attribute
100%
100%
Leaf skill attribute
100%
100%
Leaf time attribute
100%
100%
Leaf detection attribute
100%
100%
Fluent builder pattern
0%
100%
Dataclass data model
0%
100%
JSON export
100%
100%
Mermaid export
100%
100%
No oversimplification
100%
100%
Without context: $0.2137 · 50s · 9 turns · 9 in / 3,327 out tokens
With context: $0.7759 · 2m 27s · 27 turns · 276 in / 10,054 out tokens
Path analysis and mitigation prioritization
Mitigations on leaf nodes
90%
100%
Easiest path identification
87%
100%
Cheapest path identification
87%
100%
Stealthiest path identification
87%
100%
Unmitigated attack detection
100%
100%
Mitigation prioritization
91%
100%
OR path cost: min aggregation
60%
100%
AND path cost: sum aggregation
0%
100%
AND path difficulty: max aggregation
0%
25%
Defense report file
100%
100%
High-impact paths highlighted
87%
100%
Without context: $0.4653 · 2m · 12 turns · 12 in / 9,315 out tokens
With context: $0.6490 · 2m 37s · 16 turns · 15 in / 10,750 out tokens
Insider threat and nested AND/OR modeling
Insider threat modeling
41%
100%
AND node for multi-stage
100%
100%
Nested AND/OR structure
100%
100%
External-only OR path
100%
100%
All leaves: cost attribute
100%
100%
All leaves: skill attribute
100%
100%
All leaves: time attribute
100%
100%
All leaves: detection attribute
100%
100%
All leaves have mitigations
100%
100%
PlantUML export
100%
100%
JSON export
62%
100%
Without context: $0.3568 · 1m 48s · 11 turns · 60 in / 6,952 out tokens
With context: $0.5545 · 2m 9s · 17 turns · 316 in / 8,570 out tokens
9c177eb
Table of Contents
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.