Threat-model the LLM feature, not the model card
STRIDE still works when a language model sits in the middle — if you treat the model as an untrusted component.
Diagram, trust boundaries, controls on the wire, and a human gate on the steps that must not be casual.
