vphone600 Kernel Symbol Analysis
Lakr233/vphone-cli
Looks up symbols and addresses in vphone600 release and research kernel datasets, and cross-references XNU source, with findings that separate fact from inference.
Reverse engineering session: disassemble, annotate, extract assets, build emulator, port to web.
$ npx skills add vgrichina/re-skill --skill re -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install vgrichina/re-skill re --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
Claude Code skills documentation · loads skills from .claude/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .claude/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vgrichina/re-skill --skill re -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install vgrichina/re-skill re --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .agents/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vgrichina/re-skill --skill re -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install vgrichina/re-skill re --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .cursor/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vgrichina/re-skill --skill re -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install vgrichina/re-skill re --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .gemini/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install vgrichina/re-skill reInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add vgrichina/re-skill --skill re -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .github/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vgrichina/re-skill --skill re -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install vgrichina/re-skill re --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "re" agent skill from https://github.com/vgrichina/re-skill/tree/main into .opencode/skills/re/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
reReverse engineering session: disassemble, annotate, extract assets, build emulator, port to web.
Re is an agent skill from vgrichina/re-skill. Reverse engineering session: disassemble, annotate, extract assets, build emulator, port to web. Use when working on a binary RE project with REVERSE.md and tools/ directory.
Its SKILL.md is about 2.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files (for example `README.md`, `dead_ends_template.md` and `install.sh`).
It sits in Security, covering Reverse engineering and malware. The repository describes itself as: Claude Code skill for reverse engineering retro games — disassemble, annotate, extract assets, web port. The licence is MIT.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 64c3bff. It shows what the files ask for, not the result of running them.
Pre-approves these tools, so the agent can use them without asking each time:
ReadEditWriteGlobGrepBash(python3 tools/*)Bash(git log*)Bash(git status*)Bash(git diff*)Bash(grep*)…and 2 more on the same allowed-tools line.
From allowed-tools in the SKILL.md frontmatter.
Ships script files (Shell), which the agent can run.
Shell commands in SKILL.md call:
python3From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Re loads about 2.7k tokens when it runs. Until then it costs about 44 tokens; SKILL.md has 805 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from vgrichina/re-skill at commit 64c3bff, republished under its MIT licence (© vgrichina). 805 words, ~2,698 tokens.
.claude/skills/re/SKILL.md (or your agent's skills folder). This skill also uses 7 other files; get the full folder from GitHub.grep -m 10 '\[ \]' REVERSE.md 2>/dev/null || truehead -50 dead_ends.md 2>/dev/null || truels re_loop_sessions/ 2>/dev/null | tail -5 || true$ARGUMENTS given -> bootstrap new project
no $ARGUMENTS -> continue from REVERSE.md
RE investigation (tools/dis.py, xref.py, search_bytes.py, decode_tables.py)
Web port fix (web/ files)
Documentation (docs/ directory)
labels.csv accumulates across sessions. All disasm tools load it automatically.
offset,name,comment — offset with 0x prefix e.g. 0x25DE9,main,entry pointbank,addr,name,comment — addr hex no prefix e.g. 0,C070,Reset,DS:offset_hex,name,comment e.g. DS:0xCEAC,dt_physics,timestepThe comment column is optional but encouraged for non-obvious addresses.
After 10 tool calls with no progress on a single task:
If the same task is attempted across 3+ sessions without progress, escalate: the task decomposition is wrong, rethink the approach entirely.
search_bytes.py misses far calls/jumps because segment values are patched at load time. Use xref.py which understands relocation tables.decode_tables.py --follow to chase pointers to sub-tables.xref.py.python3 -cpython3 tools/dis.py ...All tools auto-load labels.csv for annotation. Prefix is python3 tools/.
Core tools (signatures adapt per platform):
dis.py <addr> [lines] # flat binary: file offset (hex)
dis.py <bank> <addr> [nbytes] # banked ROM: bank + addr
dis.py <file> <addr> [nbytes] --hunk N # Amiga hunk: target specific hunk
xref.py <addr> # find all refs (calls, jumps, loads, stores)
xref.py <addr> [bank] # banked: optional bank filter
xref.py <addr> --code # scan known code segments only (faster)
xref.py <addr> -r START END # restrict scan to file range
xref.py <addr> -c N # show N bytes of context
search_bytes.py <hex> [--context N] [--disasm [N]] # hex can be spaced or not
decode_tables.py <addr> <count> <fmt> # fmt: u8/s8/u16/s16/u32/ptr16/farptr/q8/b8/nullstr
decode_tables.py <addr> <count> struct:<n>:<f,f,...> # struct with field layout
decode_tables.py <addr> <count> <fmt> --follow N FMT # two-level pointer tables
extract_tiles.py # decode tiles/sprites to gfx/ PNGs
render_screen.py # composite screen to gfx/screen_NNN.pngPlatform extras (built as needed):
decompress.py # reverse-engineered decompressor (Ph2)
seg_offset.py # convert between SEG:OFF and file/DS offsets (DOS)
ds_lookup.py <exe> <addr> [-n N] [-s|-w|-d|-f32|-f64] # DS-relative memory viewer
strings_dump.py [-g "pattern"] [-r START END] # string scanner with grep/range
struct_dump.py # pre-configured struct dumper
find_callers.py <addr> # find all callers (near+far), complements xref.py
palette_dump.py [--accent] [--scan] # palette extractor
a4resolve.py <file> [--dump | -- <offset>] # Amiga A4-relative library resolver
hunk_scan.py / hunk_loader.py # Amiga hunk executable parser
adf_extract.py / adf_debug.py # Amiga ADF disk image tools
check_bank_refs.py # verify far references point to valid banks (NES/GB)
extract_rom_banks.py # split MBC1/3 ROM banks (GB)
render_sprites.py # render sprite sheets with palette/scale options
render_level.py # full level/map renderer (Ph6)
render_compare.py IMG1 IMG2 [--diff] # side-by-side pixel comparison
compare_frames.py # pixel-diff emulator vs web port (Ph6)Scriptable emulator (Ph5.5, python3 -m tools.emu or python3 tools/emu):
--dump-regs # load binary, print initial state
--boot-test # run until first OS call or N instructions
--run-func LABEL # jump to labeled function with pre-set state
--break ADDR # breakpoint, dump registers + stack
--trace # print each instruction
--keys STEP:SCANCODE:ASCII # inject key input at step N
--dump-screen FILE.png # screen capture
--compare # export CSV for diffing against web portREVERSE.md # data-range map, findings, task list, verification checklist
labels.csv # addr,name,comment — grows across sessions
dead_ends.md # stuck log — avoids repeating failed approaches
re_loop.sh # autonomous session driver
re_loop_sessions/ # session logs
tools/
instruction_set.py # CPU opcode database (built per platform)
dis.py # targeted disassembler (auto-loads labels.csv)
search_bytes.py # byte pattern search
xref.py # cross-reference finder
decode_tables.py # struct/table decoder
extract_tiles.py # graphics decoder
render_screen.py # screen compositor
emu/ # scriptable emulator (Ph5.5, optional)
gfx/ # extracted graphics
web/
index.html # game reimplementation
catalog.html # asset browser for visual validation
docs/
architecture_exe.md # binary layout, call graph, data flow
architecture_web.md # JS modules, EXE-to-web mappingAddress notation and labels.csv format vary by platform. Set in CLAUDE.md during bootstrap.
0xXXXXX, DS-relative DS:0xXXXX, segment:offset SEG:OFF. Tools: seg_offset.py, ds_lookup.py. FPU emulation (INT 34h-3Dh) if Borland.bank,addr (addr hex no prefix). WRAM/HRAM labels use bank='*'. Tools: check_bank_refs.py, extract_rom_banks.py.Scaffolded into the project from re_loop_template.sh during bootstrap. The user runs it from the terminal to drive autonomous sessions — the agent never invokes it directly.
The ALLOWED_TOOLS in re_loop.sh should include wildcard patterns for on-the-fly scripts: Bash(python3 tools/analyze_*), Bash(python3 tools/audit_*), Bash(python3 tools/check_*), Bash(python3 tools/gen_*), Bash(python3 tools/dump_*).
Mark these in REVERSE.md as validation happens:
SESSION_SUMMARY: <one line>See phases.md when bootstrapping a new project.
© vgrichina, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 7 other files in the repository root of vgrichina/re-skill.
Open the folder on GitHubat commit 64c3bff
Re next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Re this skillvgrichina/re-skill | 166 | — | ~2.7k | Automated safety check: Pass | MIT | |
| vphone600 Kernel Symbol AnalysisLakr233/vphone-cli | 15k | — | ~530 | Automated safety check: Pass | MIT | |
| Webhome Extension Builderwebhtv/webhtv | 1.7k | — | ~2.8k | Automated safety check: Pass | GPL-3.0 | |
| Reverse Flowlingbol088-spec/reverse-flow-skill | 940 | — | ~2.4k | Automated safety check: Pass | MIT | |
| Website Rebuildboyang-hu/website-rebuild-skill | 1.4k | — | ~6.1k | Automated safety check: Pass | MIT | |
| Client Request Signature Reversalawarexone/Agentic-Bug-Hunter | 5.3k | — | ~4.7k | Automated safety check: Pass | MIT |
Lakr233/vphone-cli
Looks up symbols and addresses in vphone600 release and research kernel datasets, and cross-references XNU source, with findings that separate fact from inference.
webhtv/webhtv
Build, review, debug, reverse-engineer, and package WebHome injected extension scripts for FongMi/WebHome App WebView pages.
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
boyang-hu/website-rebuild-skill
1:1 rebuild of award-winning creative websites (WebGL / scroll-animation / portfolio sites).
awarexone/Agentic-Bug-Hunter
Recovers a client-side request signature or anti-bot token just far enough to replay blocked requests in bug bounty testing, starting from a captured packet.
lingbol088-spec/ReiPenFlow
Guided workflow for authorized penetration testing, vulnerability validation, security reporting, CTF/local sandbox reverse engineering, and user-directed vulnerability research.
Categories
Reverse engineering session: disassemble, annotate, extract assets, build emulator, port to web. Re is an agent skill from vgrichina/re-skill. Reverse engineering session: disassemble, annotate, extract assets, build emulator, port to web.
Re fits situations like: working on a binary RE project with REVERSE.md and tools/ directory; tasks that involve Reverse engineering and malware.
Run `npx skills add vgrichina/re-skill --skill re -a claude-code`. Or copy the skill folder (the vgrichina/re-skill repository) into .claude/skills/re in your project. Claude Code loads it when a task matches its description.
Run `npx skills add vgrichina/re-skill --skill re -a codex`. Or copy the skill folder (the vgrichina/re-skill repository) into .agents/skills/re in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add vgrichina/re-skill --skill re -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re, .gemini/skills/re, .github/skills/re and .opencode/skills/re in your project.
Going by SKILL.md and its folder, Re needs a shell for the scripts in its folder and the command-line tools its instructions call (python3). Our summary lists: Python 3; A Bash shell. Its frontmatter pre-approves these tools: Read, Edit, Write, Glob, Grep, Bash(python3 tools/*), Bash(git log*), Bash(git status*), Bash(git diff*), Bash(grep*), Bash(head*), Bash(ls*).
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Re is published under the MIT licence (from the LICENSE file in the skill folder). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.7k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Re: vphone600 Kernel Symbol Analysis (Lakr233/vphone-cli, 15k stars), Webhome Extension Builder (webhtv/webhtv, 1.7k stars), Reverse Flow (lingbol088-spec/reverse-flow-skill, 940 stars) and Website Rebuild (boyang-hu/website-rebuild-skill, 1.4k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
vgrichina (a GitHub user) maintains it in vgrichina/re-skill, which has 166 GitHub stars. The repository was last updated on March 5, 2026.
Source: vgrichina/re-skill on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.