asmslicer
asmslicer is the LOCI static-analysis service. It slices ELF binaries (embedded firmware and executables) into:
- ASM basic blocks and linear execution segments, including CFG info.
- Callgraph between functions.
- Symbol and variable-access information.
and additionally provides binary diffing, worst-case stack-depth estimation, ROM/RAM memory-usage reports, and cross-artifact symbol dependency resolution.
Documentation
Full documentation lives in docs/ — start with the overview.
| 1. Overview and scope | What the service does; scope boundary vs. the TDMP trace pipeline |
| 2. Architecture | Processing pipeline, disassembly engines, data flow |
| 3. CLI reference | Subcommands slice, diff, stack-depth, memmap, deps; exit codes |
| 4. Output formats | Normative schemas of all CSV/DOT/JSON artifacts |
| 5. Analyses | Methods, assumptions, guarantees, blind spots |
| 6. Platform support | aarch64 / Cortex-M / TriCore support matrix |
| 7. Deployment and operations | Docker image, env vars, security posture |
| 8. Dependencies | Third-party inventory and licenses |
| 9. Quality assurance | Test suites and golden-data regression evidence |
| 10. Limitations and determinism | Soundness limits, reproducibility statement |
| 11. Release and versioning | CI/CD, image tagging, provenance |
How do I get set up?
- asmslicer uses uv for Python project and dependency management; install uv first.
External dependencies
The following system tools are required for full functionality:
binutils— providesc++filtfor C++ symbol demanglingllvm-18— providesllvm-ifs-18for interface stub generationrustfilt— for Rust symbol demangling
On Debian/Ubuntu:
sudo apt-get update && sudo apt-get install binutils rustfilt
wget -qO- https://apt.llvm.org/llvm.sh | sudo bash -s -- 18
For CUDA binary analysis (optional):
# Requires NVIDIA CUDA toolkit
sudo apt-get install cuda-cuxxfilt-13-0 cuda-cuobjdump-13-0 cuda-nvdisasm-13-0
- Then configure the venv using uv:
uv venv
source .venv/bin/activate
uv sync
- Once the venv is set up you can run the service CLI locally:
loci-service-asmslicer --help
loci-service-asmslicer slice path/to/app.elf ./out
- The Docker container image can also be built in the standard way:
docker build -t loci-platform/loci-service-static-analysis .
Contribution guidelines
- The project uses the
mainbranch for active development. - Changes are merged by creating a pull request targeting
main. - Merging to
mainautomatically triggers a build pipeline which deploys the Docker container to AWS ECR with thelatesttag. - Creating an annotated tag with an
x.y.zversion number triggers a pipeline build which deploys the Docker container to AWS ECR with thex.y.ztag. See docs/11-versioning.md.
Who do I talk to?
- Repo owner or admin.
Release files for loci-service-asmslicer 1.1.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Built distributions (wheels)
| File | Reset | |||
|---|---|---|---|---|
| loci_service_asmslicer-1.1.1-cp312-cp312-win_amd64.whl | CPython 3.12 | CPython 3.12 | Windows x86-64 | Details |
| loci_service_asmslicer-1.1.1-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl | CPython 3.12 | CPython 3.12 | Linux glibc 2.17+ x86-64, Linux glibc 2.28+ x86-64 | Details |
| loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_x86_64.whl | CPython 3.12 | CPython 3.12 | macOS 11.0+ x86-64 | Details |
| loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_arm64.whl | CPython 3.12 | CPython 3.12 | macOS 11.0+ ARM64 | Details |
Total release size: 31.5 MB
Release files / loci_service_asmslicer-1.1.1-cp312-cp312-win_amd64.whl
| Download URL | loci_service_asmslicer-1.1.1-cp312-cp312-win_amd64.whl |
|---|---|
| Size | 2.9 MB |
| Tags | CPython 3.12 Windows x86-64 |
|
SHA-256 checksum How to use checksums |
e7cc73088cf44f666eca2c5ea814707b9cf9f750e13ac1ab2dd1770be8fe05ad
|
|
BLAKE2b-256 checksum How to use checksums |
05504925a1f3a81c35501806d8bb424630f8d915e3e1fc8cf061c8f08d21f663
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.13.14
|
Release files / loci_service_asmslicer-1.1.1-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl
| Download URL | loci_service_asmslicer-1.1.1-cp312-cp312-manylinux2014_x86_64.manylinux_2_17_x86_64.manylinux_2_28_x86_64.whl |
|---|---|
| Size | 22.4 MB |
| Tags | CPython 3.12 Linux glibc 2.17+ x86-64 Linux glibc 2.28+ x86-64 |
|
SHA-256 checksum How to use checksums |
9c5a99e8be851b5d33e4212c547be57a3d0e48ac27b8931146c5f69345bf1368
|
|
BLAKE2b-256 checksum How to use checksums |
ac291289d51d5a95f8d93efdcb50a8959c1c9256f055b88cecbba0dfd8f3979a
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/5.0.0 CPython/3.12.3
|
Release files / loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_x86_64.whl
| Download URL | loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_x86_64.whl |
|---|---|
| Size | 3.2 MB |
| Tags | CPython 3.12 macOS 11.0+ x86-64 |
|
SHA-256 checksum How to use checksums |
3208b0ff2876322677de37ea76e6033228418bccef008ba8d3f60a00b4a559bd
|
|
BLAKE2b-256 checksum How to use checksums |
3d62ffc27e68bfb15640b23aa34d441e541c1e44b46ad1fde254eda5c12b1552
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.12.10
|
Release files / loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_arm64.whl
| Download URL | loci_service_asmslicer-1.1.1-cp312-cp312-macosx_11_0_arm64.whl |
|---|---|
| Size | 3.0 MB |
| Tags | CPython 3.12 macOS 11.0+ ARM64 |
|
SHA-256 checksum How to use checksums |
40a0d4863a580056f3ff02ccd856052d8d8616227cadb6d884fd9847f48b7535
|
|
BLAKE2b-256 checksum How to use checksums |
f1b87ad50cd72443d2707043508f85b482e73ac70be874b70d5704baf9a4baef
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.12.10
|