stride-gpt — security grade SAFE, quality 66/100

Security audit verdict: SAFE · quality 66/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by mrwadams · MCP Server · ★ 1.1k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is stride-gpt safe to install? View the security audit →

About stride-gpt

STRIDE GPT is an AI-powered threat modelling tool that leverages Large Language Models (LLMs) to generate threat models and attack trees for a given application based on the STRIDE methodology. Users provide application details, such as the application type, authentication methods, and whether the application is internet-facing or processes sensitive data. The model then generates its output based on the provided information. Table of Contents Support the Project Features Enterprise Deployment Talk at Open Security Summit Changelog Installation Repository layout Usage Security Best Practices Contributing License Support the Project If you find STRIDE GPT useful, please consider supporting the project: ⭐ Star the repository on GitHub to help more people discover the tool ☕ Buy me a coffee to support continued development and maintenance Features Agentic codebase analysis: Point the CLI at a codebase and get an autonomous, deep

ai-securityapplication-securityattack-treescybersecuritydreadgenerative-aillmmcpmitre-attacksecurity-tools

Quick Facts

Stars1,125
Forks326
LanguagePython
CategoryMCP Server
LicenseMIT
Quality Score66.0206763651769/100
Open Issues11
Last Updated2026-09-20
Created2023-04-10
Platformsmcp, python
Est. Tokens~23k

Compatible Skills

These tools work well together with stride-gpt for enhanced workflows:

  • Agent-Wiz — semantic(0.34)+complementary+shared_fw(openai)+rare_topics+same_lang+similar_pop+shared_platform (74%)
  • tachi — semantic(0.59)+complementary+rare_topics+same_lang+shared_platform (74%)
  • Halberd — semantic(0.31)+complementary+rare_topics+same_lang+similar_pop+shared_platform (65%)
  • whistleblower — semantic(0.21)+complementary+shared_fw(openai)+same_lang+similar_pop+shared_platform (65%)
  • api-relay-audit — semantic(0.17)+complementary+shared_fw(openai)+same_lang+similar_pop+shared_platform (64%)

stride-gpt alternative? Top 6 similar tools

Looking for a stride-gpt alternative? If you're comparing stride-gpt with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • CyberStrike by CyberStrikeus · ⭐ 1.9k

    Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models,

  • agentic-radar by splx-ai · ⭐ 1.0k

    A security scanner for your LLM agentic workflows

  • pentest-ai-agents by 0xSteph · ⭐ 2.1k

    Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized pene

  • mcp-for-security by cyproxio · ⭐ 628

    MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF,

  • Claude-BugHunter by elementalsouls · ⭐ 4.6k

    A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disc

  • ciso-assistant-community by intuitem · ⭐ 4.4k

    CISO Assistant is a one-stop-shop GRC platform for Risk Management, AppSec, Compliance & Audit, TPRM, BIA, Pri

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is stride-gpt?

stride-gpt is An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.. It is categorized as a MCP Server with 1.1k GitHub stars.

What programming language is stride-gpt written in?

stride-gpt is primarily written in Python. It covers topics such as ai-security, application-security, attack-trees.

How do I install or use stride-gpt?

You can find installation instructions and usage details in the stride-gpt GitHub repository at github.com/mrwadams/stride-gpt. The project has 1.1k stars and 326 forks, indicating an active community.

What license does stride-gpt use?

stride-gpt is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to stride-gpt?

The top alternatives to stride-gpt on Agent Skills Hub include CyberStrike, agentic-radar, pentest-ai-agents. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools