Skip to content

Update README with threat-model, sinks, and taxonomy documentation#38

Merged
andrew merged 1 commit intomainfrom
update-readme
Apr 11, 2026
Merged

Update README with threat-model, sinks, and taxonomy documentation#38
andrew merged 1 commit intomainfrom
update-readme

Conversation

@andrew
Copy link
Copy Markdown
Contributor

@andrew andrew commented Apr 11, 2026

The README had the two new commands in the usage block but no explanation of what they do. Added sections for `threat-model` and `sinks` with example output from a Rails project, matching the pattern of the existing Diff, Missing, and Enrichment sections. Explains the taxonomy-to-threat mapping pipeline, conjunctive matching, and what sinks are in plain language.

Updated the How it works section to show the optional `[taxonomy]` and `[[security.sinks]]` blocks in the example TOML. Regenerated the What it detects section (446 to 516 tool defs after the security-relevant library additions).

Added sections for threat-model and sinks with example output from a
Rails project. Explains the taxonomy-to-threat mapping pipeline,
conjunctive matching, and what sinks are. Updated the How it works
section to show the optional [taxonomy] and [[security.sinks]] TOML
blocks. Regenerated the What it detects section (446 to 516 tool defs
after the security-relevant library additions).
@andrew andrew merged commit b8be950 into main Apr 11, 2026
5 checks passed
@andrew andrew deleted the update-readme branch April 11, 2026 18:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant