asmslicer
asmslicer is the LOCI static-analysis service. It slices ELF binaries (embedded firmware and executables) into:
- ASM basic blocks and linear execution segments, including CFG info.
- Callgraph between functions.
- Symbol and variable-access information.
and additionally provides binary diffing, worst-case stack-depth estimation, ROM/RAM memory-usage reports, and cross-artifact symbol dependency resolution.
Documentation
Full documentation lives in docs/ — start with the overview.
| 1. Overview and scope | What the service does; scope boundary vs. the TDMP trace pipeline |
| 2. Architecture | Processing pipeline, disassembly engines, data flow |
| 3. CLI reference | Subcommands slice, diff, stack-depth, memmap, deps; exit codes |
| 4. Output formats | Normative schemas of all CSV/DOT/JSON artifacts |
| 5. Analyses | Methods, assumptions, guarantees, blind spots |
| 6. Platform support | aarch64 / Cortex-M / TriCore support matrix |
| 7. Deployment and operations | Docker image, env vars, security posture |
| 8. Dependencies | Third-party inventory and licenses |
| 9. Quality assurance | Test suites and golden-data regression evidence |
| 10. Limitations and determinism | Soundness limits, reproducibility statement |
| 11. Release and versioning | CI/CD, image tagging, provenance |
How do I get set up?
- asmslicer uses uv for Python project and dependency management; install uv first.
External dependencies
The following system tools are required for full functionality:
binutils— providesc++filtfor C++ symbol demanglingllvm-18— providesllvm-ifs-18for interface stub generationrustfilt— for Rust symbol demangling
On Debian/Ubuntu:
sudo apt-get update && sudo apt-get install binutils rustfilt
wget -qO- https://apt.llvm.org/llvm.sh | sudo bash -s -- 18
For CUDA binary analysis (optional):
# Requires NVIDIA CUDA toolkit
sudo apt-get install cuda-cuxxfilt-13-0 cuda-cuobjdump-13-0 cuda-nvdisasm-13-0
- Then configure the venv using uv:
uv venv
source .venv/bin/activate
uv sync
- Once the venv is set up you can run the service CLI locally:
loci-service-asmslicer --help
loci-service-asmslicer slice path/to/app.elf ./out
- The Docker container image can also be built in the standard way:
docker build -t loci-platform/loci-service-static-analysis .
Contribution guidelines
- The project uses the
mainbranch for active development. - Changes are merged by creating a pull request targeting
main. - Merging to
mainautomatically triggers a build pipeline which deploys the Docker container to AWS ECR with thelatesttag. - Creating an annotated tag with an
x.y.zversion number triggers a pipeline build which deploys the Docker container to AWS ECR with thex.y.ztag. See docs/11-versioning.md.
Who do I talk to?
- Repo owner or admin.
Release files for loci-service-asmslicer 1.0.17
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Built distributions (wheels)
| File | Reset | |||
|---|---|---|---|---|
| loci_service_asmslicer-1.0.17-cp312-cp312-win_amd64.whl | CPython 3.12 | CPython 3.12 | Windows x86-64 | Details |
| loci_service_asmslicer-1.0.17-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl | CPython 3.12 | CPython 3.12 | Linux glibc 2.28+ x86-64, Linux glibc 2.17+ x86-64 | Details |
| loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_x86_64.whl | CPython 3.12 | CPython 3.12 | macOS 11.0+ x86-64 | Details |
| loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_arm64.whl | CPython 3.12 | CPython 3.12 | macOS 11.0+ ARM64 | Details |
Total release size: 30.8 MB
Release files / loci_service_asmslicer-1.0.17-cp312-cp312-win_amd64.whl
| Download URL | loci_service_asmslicer-1.0.17-cp312-cp312-win_amd64.whl |
|---|---|
| Size | 2.8 MB |
| Tags | CPython 3.12 Windows x86-64 |
|
SHA-256 checksum How to use checksums |
e1501e51849d9b7cbc53a7392b636d112759a2cf4d334521b323c43f000d6d01
|
|
BLAKE2b-256 checksum How to use checksums |
0bf53fc5c2d0154d238d2de6b6a1d6841488689bc169a65a4a2232c82d59e5b9
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.13.14
|
Release files / loci_service_asmslicer-1.0.17-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl
| Download URL | loci_service_asmslicer-1.0.17-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl |
|---|---|
| Size | 21.9 MB |
| Tags | CPython 3.12 Linux glibc 2.17+ x86-64 Linux glibc 2.28+ x86-64 |
|
SHA-256 checksum How to use checksums |
8c2ba9227a2f9b7192181695eceb1513d6e5bc7bd12ecaa6359f789920a32390
|
|
BLAKE2b-256 checksum How to use checksums |
eb4bc87ffd4f511c9ed0f35dab627792d0fa7ee6ed3d15485bdcd9fec391ddb6
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/5.0.0 CPython/3.12.3
|
Release files / loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_x86_64.whl
| Download URL | loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_x86_64.whl |
|---|---|
| Size | 3.1 MB |
| Tags | CPython 3.12 macOS 11.0+ x86-64 |
|
SHA-256 checksum How to use checksums |
df0a606175df50e4607f52337f1b49f317387834ff027b8cc15a20e02c8cdf46
|
|
BLAKE2b-256 checksum How to use checksums |
aad68d9cdb9ff767ee640b552b19c5d1c90667225f82ce78523b1e5086ef3abd
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.12.10
|
Release files / loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_arm64.whl
| Download URL | loci_service_asmslicer-1.0.17-cp312-cp312-macosx_11_0_arm64.whl |
|---|---|
| Size | 2.9 MB |
| Tags | CPython 3.12 macOS 11.0+ ARM64 |
|
SHA-256 checksum How to use checksums |
770e3ff05e2e06fcee79e1684a19a2e236e1054518501460d450812faa320d77
|
|
BLAKE2b-256 checksum How to use checksums |
381a25186644fdc4313da73294e96bce78cc9feb7b43f1f653dca9d876931263
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.12.10
|