Skip to content
Back to skills

Ios Runtime Forensics Workflow

ASecurity

Capture and interpret reproducible iOS Simulator performance and memory evidence. Use when an iOS issue needs ETTrace/symbolication, a memgraph, leak ownership traces, or before/after runtime proof rather than a code-only guess.

  • 7 stars
  • 0 votes
  • 0 copies
  • 7 views
  • Added September 5, 2026
ai-agentsswifttestingperformance

Security analysis

A100/100

Pro scans all 5 files and shows the line behind each finding

Scanned September 5, 2026

npx -y skills add gaelic-ghost/socket --skill ios-runtime-forensics-workflow --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Ios Runtime Forensics Workflow?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Ios Runtime Forensics Workflow
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/gaelic-ghost-ios-runtime-forensics-workflow/badge)](https://www.skillsdirectory.com/skills/gaelic-ghost-ios-runtime-forensics-workflow)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: ios-runtime-forensics-workflow
description: Capture and interpret reproducible iOS Simulator performance and memory evidence. Use when an iOS issue needs ETTrace/symbolication, a memgraph, leak ownership traces, or before/after runtime proof rather than a code-only guess.
---

# iOS Runtime Forensics Workflow

## Purpose

Provide two explicit evidence modes for a reproducible iOS Simulator issue: `performance-trace` for focused ETTrace/symbolicated latency or CPU work, and `memory-graph` for retained-object and leak ownership analysis. This skill owns evidence shape, not normal app build, launch, or UI driving.

## When To Use

- Use `performance-trace` for launch/runtime latency, CPU-heavy stacks, or comparison traces.
- Use `memory-graph` for leaks, retain cycles, memory growth, or objects that should release after a known interaction.
- Route simulator discovery, build, install, launch, logs, screenshots, and UI driving to `xcode-build-run-workflow`.

## Single-Path Workflow

1. Apply the Apple docs gate through `explore-apple-swift-docs`. Confirm the current Xcode/Simulator evidence mechanism before acting.
2. Define one reproduction, start/stop boundary, target app build, simulator UDID, OS, Xcode version, and expected release or latency behavior.
3. Select exactly one mode: `performance-trace` or `memory-graph`. Do not mix CPU and ownership conclusions in one unsupported capture.
4. For `performance-trace`, read `references/performance-trace-evidence.md`, capture a focused trace with matching symbols, and identify hot stacks only after symbolication.
5. For `memory-graph`, read `references/memory-graph-evidence.md`, drive the release-producing flow, capture a memgraph, inspect app-owned retained types, and follow ownership evidence to the retaining path.
6. Make the smallest root-cause change, then recapture the same flow on the same simulator where practical.
7. Report the exact capture boundary, tool/version context, what the artifact proves, what it does not prove, and the before/after delta.

## Inputs

- reproducible simulator flow, target app/scheme, simulator UDID, and build configuration
- expected release/lifetime or performance boundary
- mode: `performance-trace` or `memory-graph`
- existing trace, memgraph, logs, screenshots, or symbol files when available

## Outputs

- capture plan or artifact evidence with its scope and limitations
- app-owned hot stack or retaining ownership path when evidence supports it
- smallest remediation and same-flow recapture result

## Guards and Stop Conditions

- Do not call a memory graph a leak proof until the expected lifetime and retaining path are established.
- Do not compare traces with different app builds, simulator/OS state, or workload boundaries as a regression result.
- Do not claim a symbolicated root cause from an unsymbolicated stack.
- Stop when the issue cannot be reproduced or a capture would include user-sensitive content without explicit approval.

## Fallbacks and Handoffs

- Recommend `xcode-build-run-workflow` for all normal simulator execution and log/UI evidence.
- Recommend `xcode-testing-workflow` for Instruments, `xctrace`, test plans, and broader Xcode performance work.
- Recommend `swiftui-performance-audit` when the user first needs a code-first SwiftUI hypothesis.

## References

- `references/performance-trace-evidence.md`
- `references/memory-graph-evidence.md`
- Recommend `references/snippets/apple-xcode-project-core.md` when the app needs reusable Xcode-project policy alongside simulator evidence work.

Files in this skill

  • SKILL.md3.5 KB
  • agents/openai.yaml323 B
  • references/memory-graph-evidence.md474 B
  • references/performance-trace-evidence.md524 B
  • references/snippets/apple-xcode-project-core.md26.4 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…