peripheral-core 0.8.2

External-device connection forensic reader: parses Windows setupapi.dev.log and SYSTEM-hive registry device keys into typed DeviceConnection records with bus classification and authoritative-vs-inferred timestamp tagging
Documentation
# Changelog

All notable changes to this project will be documented in this file.

The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/),
and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html).

## [Unreleased]

## [0.8.2]https://github.com/SecurityRonin/peripheral-forensic/compare/peripheral-core-v0.8.1...peripheral-core-v0.8.2 - 2026-08-04

### Added

- *(shellbag)* GREEN — walk BagMRU, surface drive-letter browsed folders
- *(usb-ids)* GREEN — usb.ids parser + curated common-vendor table

### Fixed

- *(core)* take forensicnomicon-core from the registry, not a sibling repo

### Other

- *(usb-ids)* source common vendors from forensicnomicon (knowledge in the leaf)

## [0.8.1]https://github.com/SecurityRonin/peripheral-forensic/compare/peripheral-core-v0.8.0...peripheral-core-v0.8.1 - 2026-07-16

### Added

- *(registry)* GREEN — walk Enum\THUNDERBOLT + FireWire/eSATA/SD/ExpressCard