Tools / Threat modeling / Releases

Threat-model prompt pack releases

Version history, output-contract changes, and migration notes for the prompt pack.

Prompt injection warning Always review prompts before referencing or copying them into an assistant, agent, or production system.
Compatibility rule. The major version identifies the JSON and workflow contract. A v2 matrix does not validate as v3 without new context, phase coverage, source, importance, and QA fields. Keep the pack version with each export.

3.0

24 August 2026 · breaking schema and workflow release

Schema: v3 JSON Schema. Evaluation contract: rubric.md.

2.0

22 August 2026 · prior major release

Earlier pack history

Repository history before the 2.0 contract

Earlier revisions established the chained Shostack questions, diagram inventory, STRIDE, PHANTOM-B, SRF joins, and evaluation harness. They did not publish the phase, evidence, and export contracts introduced in 2.0 and 3.0.