Open ChillAndImprove opened 1 year ago
This is great! Hard to believe but I was going to start a UI project for Threagile and I wanted to check the GitHub issues to see if anyone mentioned it so I can get some interested folks and boom! @ChillAndImprove is a few steps ahead. I will keep an eye on ThreagilePlus and make contributions.
THE SILENCE IS DEAFENING
Currently a greater refactoring is happening by the maintainer team, allowing more modularized and easier integration of other features and components. As this will soon be finished (see the main branch for the progress), I’m sure that the ecosystem enhancements (like UI etc.) will be on track next :-) …
@cschneider4711 Aweome! While developing ThreagilePlus, I discovered numerous innovative ways to enhance Threagile's usability. One feature e.g. is the immediate feedback on how adding a node influences the risk landscape and there are numerous more. I sincerely hope your endeavors achieve similar visuals, especially since I'm a big fan of Threagile. I believe transitioning to a more visual approach could significantly amplify its benefits. The inspiration behind developing ThreagilePlus stemmed from AttackTree's compelling visuals, which I thought could greatly enrich Threagile as well.
I've put some more work into it, and I think it's usable now. It's still a bit buggy, but it's turning out to be a lot of fun!
@ChillAndImprove what do you think about upgrading ThreagilePlus to use the code from master branch of Threagile? I think you made a great effort and yes, visualisation of threagile model is making a huge difference for us allowing easier to "sell" this tool to other teams. As currently workflow is: my team is building the threat model for other teams in out organisations and interviewing them on outcomes, mainly because for people that's very scary to make changes to huge yaml file. Me and my colleagues have some capacity until end of year to spend some time with improving/bug fixing etc and it would be very nice to get some guidance about your tool. May be even moving your tool into this repo as part of Threagile. What do you think? Or would you like to keep it separate?
Anyway would be nice to talk, please reach out to me: phone/Signal/Whatsapp/Telegram: +447848811808 LinkedIn: https://www.linkedin.com/in/yevhen-zavhorodnii-40773132/ Email: yevhen.zavhorodnii@gmail.com
What do you think of this @cschneider4711 https://github.com/ChillAndImprove/ThreagilePlus ?