1. Describe the system
Provide architecture, trust boundaries, data types, users, and important business constraints.
Build a structured threat model, review it with your team, and retain the approved report with the security review.
Provide architecture, trust boundaries, data types, users, and important business constraints.
BlackShield organizes likely spoofing, tampering, disclosure, denial-of-service, and privilege risks for human review.
Record owners and practical controls. Require approval before sensitive AI-assisted actions are used.
Export the approved report to the Security Review so the decision and its context remain tenant-scoped.
Remove secrets from prompts, confirm the AI Gateway policy for your workspace, and name the person who will approve the final model.