Skip to content

Commit 604e141

Browse files
github-actions[bot]CopilotKSchlobohm
authored
[extension] Add ThreatSpec extension to community catalog (#4701)
* Add ThreatSpec extension to community catalog Add threatspec extension submitted by @hupe1980 to:\n- extensions/catalog.community.json (alphabetical order)\n- docs/community/extensions.md community extensions table\n\nCloses #4660\n\nAssisted-by: GitHub Copilot (model: gpt-5.2-codex, autonomous)\nCo-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add PyYAML requirement to ThreatSpec catalog entry Co-authored-by: KSchlobohm <23503973+KSchlobohm@users.noreply.github.com> --------- Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: KSchlobohm <23503973+KSchlobohm@users.noreply.github.com>
1 parent f2a2616 commit 604e141

2 files changed

Lines changed: 56 additions & 1 deletion

File tree

‎docs/community/extensions.md‎

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -180,6 +180,7 @@ The following community-contributed extensions are available in [`catalog.commun
180180
| TDD Extension | Drives spec-kit implementation with tests: a language-agnostic red-green-refactor loop with a per-feature test list, recorded red and green evidence, and mutation-checked test strength. | `process` | Read+Write | [spec-kit-tdd](https://github.com/d0whc3r/spec-kit-tdd) |
181181
| Team Assign | Assign tasks.md items to human engineers, split into subtasks, and generate a per-engineer workboard | `process` | Read+Write | [spec-kit-team-assign](https://github.com/tarunkumarbhati/spec-kit-team-assign) |
182182
| Test Coverage Drift Control | Generate incremental coverage drift reports and planned remediation tasks after implementation | `code` | Read+Write | [spec-kit-test-coverage-drift-control](https://github.com/benizzio/spec-kit-test-coverage-drift-control) |
183+
| ThreatSpec | STRIDE and AI/ML threat modeling with threat-to-test traceability and security convergence | `process` | Read+Write | [spec-kit-threatspec](https://github.com/hupe1980/spec-kit-threatspec) |
183184
| Time Machine | Retroactively apply the full SDD workflow to existing codebases — analyse, spec, and ship feature-by-feature | `process` | Read+Write | [spec-kit-time-machine](https://github.com/teeyo/spec-kit-time-machine) |
184185
| TinySpec | Lightweight single-file workflow for small tasks — skip the heavy multi-step SDD process | `process` | Read+Write | [spec-kit-tinyspec](https://github.com/Quratulain-bilal/spec-kit-tinyspec) |
185186
| Token Budget | Reduces LLM token consumption in Spec Kit workflows: compact artifacts in-place, scope per-phase reading, suppress prose padding, and report token usage | `process` | Read+Write | [spec-kit-token-budget](https://github.com/tinesoft/spec-kit-token-budget) |

‎extensions/catalog.community.json‎

Lines changed: 55 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
{
22
"schema_version": "1.0",
3-
"updated_at": "2026-09-18T00:00:00Z",
3+
"updated_at": "2026-09-23T00:00:00Z",
44
"catalog_url": "https://raw.githubusercontent.com/github/spec-kit/main/extensions/catalog.community.json",
55
"extensions": {
66
"adrkit": {
@@ -5781,6 +5781,60 @@
57815781
"created_at": "2026-04-25T00:00:00Z",
57825782
"updated_at": "2026-04-25T00:00:00Z"
57835783
},
5784+
"threatspec": {
5785+
"name": "ThreatSpec — Threat Modeling & Security Traceability",
5786+
"id": "threatspec",
5787+
"description": "STRIDE and AI/ML threat modeling with threat-to-test traceability and security convergence",
5788+
"author": "hupe1980",
5789+
"version": "0.1.0",
5790+
"download_url": "https://github.com/hupe1980/spec-kit-threatspec/archive/refs/tags/v0.1.0.zip",
5791+
"sha256": "6003b667e01e51a4637e4b6c2f2cea644674449f5bd2e7ed9301d3459a5a9c40",
5792+
"repository": "https://github.com/hupe1980/spec-kit-threatspec",
5793+
"homepage": "https://github.com/hupe1980/spec-kit-threatspec",
5794+
"documentation": "https://github.com/hupe1980/spec-kit-threatspec/blob/main/README.md",
5795+
"changelog": "https://github.com/hupe1980/spec-kit-threatspec/blob/main/CHANGELOG.md",
5796+
"license": "MIT",
5797+
"category": "process",
5798+
"effect": "read-write",
5799+
"requires": {
5800+
"speckit_version": ">=1.0.0",
5801+
"tools": [
5802+
{
5803+
"name": "python",
5804+
"version": ">=3.8",
5805+
"required": true
5806+
},
5807+
{
5808+
"name": "pyyaml",
5809+
"required": true
5810+
},
5811+
{
5812+
"name": "uv",
5813+
"required": false
5814+
},
5815+
{
5816+
"name": "jsonschema",
5817+
"required": false
5818+
}
5819+
]
5820+
},
5821+
"provides": {
5822+
"commands": 3,
5823+
"hooks": 7
5824+
},
5825+
"tags": [
5826+
"security",
5827+
"threat-modeling",
5828+
"llm",
5829+
"agentic",
5830+
"traceability"
5831+
],
5832+
"verified": false,
5833+
"downloads": 0,
5834+
"stars": 0,
5835+
"created_at": "2026-09-23T00:00:00Z",
5836+
"updated_at": "2026-09-23T00:00:00Z"
5837+
},
57845838
"tldr": {
57855839
"name": "Spec Kit TLDR",
57865840
"id": "tldr",

0 commit comments

Comments
 (0)