STRIDE-style threat modeling for new workflows. Before connecting a system to a credential, opening a network egress, or granting an agent a new capability, enumerates Spoofing / Tampering / Repudiation / Information Disclosure / Denial / Elevation threats and proposes mitigations. Use when "what could go wrong" hasn't been asked yet.