Source recovery references¶
Function and data recovery is recorded by native address. The old aggregate naming notebook duplicated format, struct and behavior pages and retained superseded hypotheses. Its unique observations are preserved in the historical notebook; it is not a maintained reference or a backlog.
Resolve current evidence¶
analysis/ghidra/maps/name_map.jsonandanalysis/ghidra/maps/data_map.jsonrecord canonical names, signatures and data labels.analysis/annotations/functions.jsonretains address-keyed recovery notes.tools/match/STATUS.mdreports matching results; each scratch's configuration identifies its source, including bodies moved intotools/native/recovered/.- Binary analysis describes current source/view lookup.
- Native linking distinguishes recovered code, library providers, linkability and byte-match evidence.
Behavior and layout references¶
- Config blob and save/status.
- Player, creatures, projectiles, and effects.
- Gameplay, Survival, UI, and online scores.
- Perk call sites and mechanics.
- Grim API and its evidence appendix.
Keep new findings in the owning reference page after verification. A recovered name is not by itself proof of behavior; retain instruction addresses, capture provenance and remaining uncertainty where they affect the conclusion.