Smart card APDU trace forensic analyzer. Use this skill whenever the user uploads a smart card log file (.log), mentions APDU trace analysis, asks about PIV or GlobalPlatform card behavior, wants to debug smart card provisioning, needs to identify a card from its ATR or APDU traffic, or asks about card security (default keys, credential exposure, certificate status). Also trigger on: CardForensics, CryptoTokenKit log, eToken, YubiKey trace, SafeNet, PIV provisioning, SCP03 authentication debugging, smart card forensics, CHUID, FASC-N, card management key, APDU replay, or card compliance audit. This skill runs a full pipeline: card identification (5,100+ ATR database), protocol reconstruction, TLV annotation, certificate provisioning checks, default key brute-force, threat detection, security scoring, token identity extraction, and compliance profiling — all client-side with no data leaving the machine.
2026-04-09