Skip to content

Repository files navigation

DFTK Skill

The standalone Agent Skill for DigiForensics/DFTK.

DFTK provides structured forensic capabilities and Observation/Evidence results. This repository contains the investigation guidance for defining evidence requirements, selecting capabilities, checking findings, and reporting their sources.

Installation

The recommended installation path is to give an Agent the primary DFTK repository URL:

https://github.com/DigiForensics/DFTK

The Agent installs dftk[mcp]; dftk agent setup --install-skill then fetches this matching DFTK-skill release into its own host directory and emits a reviewable MCP configuration fragment. The exact, safe sequence is in INSTALL_AGENT.md.

Version

3.4.0 — for DFTK 3.4.x.

Install

Install the complete skill directory, including references/, examples, templates, and skills/. The entry-point file alone is insufficient.

Common user-level locations:

~/.agents/skills/dftk/
~/.kimi-code/skills/dftk/
~/.workbuddy/skills/dftk/
~/.claude/skills/dftk/
~/.codex/skills/dftk/
~/.hermes/skills/dftk/

Or install the matching release snapshot via dftk skill --install (fetches the v{TOOLKIT_VERSION} tag from this repo):

dftk skill --install

Structure

dftk/
  SKILL.md            # entry point and case-scoping guidance
  references/         # topic-specific guidance, loaded when needed
  examples/           # investigation examples
  templates/          # report templates

Design boundary

This repository contains guidance and templates, not forensic parsers or an Agent runtime. Executable capabilities are provided by the DFTK repository and PyPI package.

The generated capability catalog is tied to the matching DFTK release manifest.

See CONTRIBUTING.md for documentation ownership and the specialist skill format.

Maintainer

About

No description, website, or topics provided.

Resources

Contributing

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages