{
  "library": "NanoDeck Forensics & Pentesting Code Library",
  "version": "2026.06.18",
  "ethicalUse": "All resources are for authorized defensive security, digital forensics, compliance, education, CTF labs, and professional assessments only.",
  "resources": [
    {
      "title": "File Metadata Extractor",
      "category": "Digital Forensics",
      "description": "Python script that walks evidence files and exports filesystem metadata, hashes, MIME guesses, and optional EXIF summaries.",
      "language": "Python",
      "skillLevel": "beginner",
      "path": "/security-library/digital-forensics/file_metadata_extractor.py"
    },
    {
      "title": "Disk Image Analysis Template",
      "category": "Digital Forensics",
      "description": "Markdown worksheet for acquisition notes, integrity verification, partition triage, timelines, and findings logs.",
      "language": "Markdown",
      "skillLevel": "intermediate",
      "path": "/security-library/digital-forensics/disk_image_analysis_template.md"
    },
    {
      "title": "Log Timeline Reconstructor",
      "category": "Digital Forensics",
      "description": "Python parser that normalizes ISO-8601, syslog, and web access-log timestamps into a sorted timeline CSV.",
      "language": "Python",
      "skillLevel": "beginner",
      "path": "/security-library/digital-forensics/log_timeline_reconstructor.py"
    },
    {
      "title": "Memory Forensics Starter Kit",
      "category": "Digital Forensics",
      "description": "Volatility 3 command patterns and evidence table for Windows and Linux memory-image triage.",
      "language": "Markdown",
      "skillLevel": "intermediate",
      "path": "/security-library/digital-forensics/memory_forensics_starter.md"
    },
    {
      "title": "Packet Analysis Script",
      "category": "Digital Forensics",
      "description": "Scapy-based PCAP summarizer that extracts conversations, ports, lengths, and DNS queries for authorized captures.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/digital-forensics/packet_analysis.py"
    },
    {
      "title": "Wireshark Display Filter Starter Set",
      "category": "Digital Forensics",
      "description": "Practical display filters for DNS, HTTP, TLS, TCP resets, SMB, Kerberos, DHCP, and cleartext indicator triage.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/digital-forensics/wireshark_filters.md"
    },
    {
      "title": "File Carving Template",
      "category": "Digital Forensics",
      "description": "Bounded carving starter for PNG, JPG, PDF, ZIP, and PE signatures from authorized binary images.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/digital-forensics/file_carving_template.py"
    },
    {
      "title": "Hash Verification Tool",
      "category": "Digital Forensics",
      "description": "SHA-256 manifest creator and verifier for evidence integrity workflows.",
      "language": "Python",
      "skillLevel": "beginner",
      "path": "/security-library/digital-forensics/hash_verify.py"
    },
    {
      "title": "Authorized Nmap Wrapper",
      "category": "Penetration Testing",
      "description": "Conservative Nmap service-discovery wrapper that requires an explicit JSON scope file before scanning.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/pentesting/nmap_authorized_wrapper.py"
    },
    {
      "title": "Recon Scope Example",
      "category": "Penetration Testing",
      "description": "JSON template for authorized targets, exclusions, contacts, and approved testing windows.",
      "language": "JSON",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/scope.example.json"
    },
    {
      "title": "OWASP Top 10 Web Testing Checklist",
      "category": "Penetration Testing",
      "description": "Authorized web app testing checklist covering OWASP Top 10 categories with evidence capture guidance.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/owasp_web_testing_checklist.md"
    },
    {
      "title": "Web Security Header Check",
      "category": "Penetration Testing",
      "description": "Python script that reviews common browser security headers for authorized applications.",
      "language": "Python",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/web_security_header_check.py"
    },
    {
      "title": "Password Policy Audit Script",
      "category": "Penetration Testing",
      "description": "Consent-based password quality checker that avoids cracking, login attempts, and credential harvesting.",
      "language": "Python",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/password_audit.py"
    },
    {
      "title": "SSL/TLS Configuration Audit",
      "category": "Penetration Testing",
      "description": "Python TLS snapshot tool for certificate issuer, expiry, SANs, negotiated protocol, and cipher review.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/pentesting/tls_audit.py"
    },
    {
      "title": "API Security Test Template",
      "category": "Penetration Testing",
      "description": "JSON-driven requests-based smoke test runner for auth, method handling, and schema validation expectations.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/pentesting/api_security_tests.py"
    },
    {
      "title": "API Test Plan Example",
      "category": "Penetration Testing",
      "description": "Example JSON plan for unauthenticated access, invalid payload, and unsupported method checks.",
      "language": "JSON",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/api_test_plan.example.json"
    },
    {
      "title": "Passive Subdomain Enumerator",
      "category": "Penetration Testing",
      "description": "DNS-resolution based subdomain discovery script for domains explicitly authorized in scope.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/pentesting/subdomain_enum.py"
    },
    {
      "title": "Vulnerability Report Template",
      "category": "Penetration Testing",
      "description": "Professional finding template with ethical notice, severity, evidence, impact, remediation, and references.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/pentesting/vulnerability_report_template.md"
    },
    {
      "title": "Blockchain Address Tracing Script",
      "category": "Crypto / Blockchain Forensics",
      "description": "Web3.py reference script for tracing recent Ethereum transactions tied to a known address.",
      "language": "Python",
      "skillLevel": "advanced",
      "path": "/security-library/blockchain-forensics/address_tracing.py"
    },
    {
      "title": "Transaction Graph Analysis Template",
      "category": "Crypto / Blockchain Forensics",
      "description": "CSV-to-Graphviz script that summarizes address-to-address transaction relationships.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/blockchain-forensics/transaction_graph_analysis.py"
    },
    {
      "title": "Solidity Smart Contract Audit Checklist",
      "category": "Crypto / Blockchain Forensics",
      "description": "Checklist for access control, asset handling, reentrancy, accounting, oracle risk, upgrades, and testing evidence.",
      "language": "Markdown",
      "skillLevel": "advanced",
      "path": "/security-library/blockchain-forensics/solidity_audit_checklist.md"
    },
    {
      "title": "Wallet Forensics Reference Guide",
      "category": "Crypto / Blockchain Forensics",
      "description": "Guide for lawful wallet incident intake, evidence sources, triage workflow, and reporting fields.",
      "language": "Markdown",
      "skillLevel": "intermediate",
      "path": "/security-library/blockchain-forensics/wallet_forensics_guide.md"
    },
    {
      "title": "On-Chain Data Extraction Script",
      "category": "Crypto / Blockchain Forensics",
      "description": "Web3.py exporter for block transaction metadata from an authorized RPC endpoint.",
      "language": "Python",
      "skillLevel": "advanced",
      "path": "/security-library/blockchain-forensics/onchain_extraction.py"
    },
    {
      "title": "AI Log Anomaly Detection",
      "category": "AI-Assisted Security Tools",
      "description": "Scikit-learn IsolationForest pipeline that flags unusual defensive log messages for analyst review.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/ai-assisted/log_anomaly_detection.py"
    },
    {
      "title": "Automated CVE Lookup Report",
      "category": "AI-Assisted Security Tools",
      "description": "NVD API client that produces a defensive markdown CVE report for product or package keywords.",
      "language": "Python",
      "skillLevel": "intermediate",
      "path": "/security-library/ai-assisted/cve_lookup.py"
    },
    {
      "title": "LLM Vulnerability Description Generator Template",
      "category": "AI-Assisted Security Tools",
      "description": "Prompt template and review checklist for human-reviewed vulnerability report drafting with redacted evidence.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/ai-assisted/llm_vulnerability_description_template.md"
    },
    {
      "title": "Legal and Ethical Use Disclaimer",
      "category": "Documentation & Guides",
      "description": "Reusable disclaimer defining authorized use, user commitments, prohibited behavior, and evidence handling.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/docs/legal_ethical_disclaimer.md"
    },
    {
      "title": "Penetration Testing Rules of Engagement",
      "category": "Documentation & Guides",
      "description": "Scope and rules-of-engagement template covering authorization, assets, rate limits, data handling, and sign-off.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/docs/rules_of_engagement_template.md"
    },
    {
      "title": "Professional Pentest Report Template",
      "category": "Documentation & Guides",
      "description": "Markdown report template suitable for Word conversion with executive summary, methodology, findings, and appendices.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/docs/professional_pentest_report_template.md"
    },
    {
      "title": "CTF Starter Guide",
      "category": "Documentation & Guides",
      "description": "Beginner-friendly guide to legal CTF practice, lab setup, categories, workflow, and safe rules.",
      "language": "Markdown",
      "skillLevel": "beginner",
      "path": "/security-library/docs/ctf_starter_guide.md"
    }
  ]
}
