Skip to content
Back to skills

Trace Forensics

ASecurity

Diagnose an existing trace, profile, heap snapshot, or spindump without recapturing the process.

  • 2 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added October 1, 2026
ai-agentsnode

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned October 1, 2026

npx -y skills add williamwue/oh-my-stack --skill trace-forensics --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Trace Forensics?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Trace Forensics
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/williamwue-trace-forensics-53eb3914/badge)](https://www.skillsdirectory.com/skills/williamwue-trace-forensics-53eb3914)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: trace-forensics
description: Diagnose an existing trace, profile, heap snapshot, or spindump without recapturing the process.
---

# Trace forensics

The capture already exists. Record its path, format, time range, producer,
build identity, and whether samples are complete. Choose a parser for that
format and transform large data into a queryable table of frames, events,
samples, or nodes. Keep raw data intact; report any parse loss or clock skew.

Narrow to the dominant cost or failure path. For CPU, inspect inclusive and
self time plus callers; for heap, trace retainers to a root; for a spindump,
identify on-CPU or blocked threads and wait reasons. Correlate event IDs and
time windows before claiming a causal sequence. Map frames to source using
the artifact's symbols and the matching build. If source mapping is absent,
return an artifact-level finding, not a precise code-line diagnosis.

Compare a paired before/after capture when available and equivalent. Without
one, present the strongest supported hypothesis and the discriminating next
check. Return reduced findings with artifact offsets or queries, source
locations if proven, and confidence. This is read-only diagnosis; a requested
fix belongs to [bug-fix](../bug-fix/SKILL.md) or
[perf-issue](../perf-issue/SKILL.md).

Files in this skill

  • SKILL.md1.3 KB
  • skill.json269 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…