Book a 30-minute demo →
Skill scan report

WorldThreatModel

View on GitHub
24 Low Automated analysis flagged 3 potential risk patterns.

What this skill does

The skill is a world threat modeling tool that stress-tests ideas, strategies, and investments against 11 time horizons from 6 months to 50 years. It creates and updates world models using deep resear

github/danielmiessler - Network Communication - 17.9k stars

ThreatsNetwork Communication File System Access User Interaction

Threat analysis

Network Communication1 finding
File System Access1 finding
User Interaction1 finding

Skill info

Namedanielmiessler/worldthreatmodel
Registrygithub
Version58381b3
PURLpkg:github/danielmiessler/LifeOS@58381b3?skill=worldthreatmodel
Stars17.9k

Assessments (3)

Network Communication1 finding HIGH
HIGH

Network Communication via local-llm-review

Workflows/UpdateModels.md

The skill uses `curl` to send a POST request to `http://localhost:31337/notify` with a voice notification message. This is a legitimate use case for user feedback, but it could be abused if the notifi
File System Access1 finding MEDIUM
MEDIUM

File System Access via local-llm-review

Workflows/UpdateModels.md

The skill reads and writes files to the `~/.claude/LIFEOS/MEMORY/RESEARCH/WorldModels/` directory. This is a legitimate use case for storing model data, but it could be a risk if the directory is not 
User Interaction1 finding MEDIUM
MEDIUM

User Interaction via local-llm-review

Workflows/TestIdea.md

The skill prompts the user to run the `UpdateModels` workflow if the world models are missing or outdated. This is a legitimate use case for ensuring the models are up to date, but it could be a risk 

Badge

Add the Anomity scan badge for WorldThreatModel to your README.

Anomity Skill Check badge

Markdown
[![Anomity Skill Check](https://anomity.ai/skills/badge.svg)](https://anomity.ai/skills/github/danielmiessler/worldthreatmodel/)
HTML
<a href="https://anomity.ai/skills/github/danielmiessler/worldthreatmodel/"><img src="https://anomity.ai/skills/badge.svg" alt="Anomity Skill Check"></a>
Image URL
https://anomity.ai/skills/badge.svg

How Anomity governs this at runtime

Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.

Book a 30-minute demo to see your own skill inventory.

Methodology and disputes

Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of WorldThreatModel? Report an issue or request a rescan.

Ask AI about Anomity
ChatGPT Claude Perplexity Google AI Grok