Analyzes Solidity contract entry points to map attack surface. Identifies all external/public functions, categorizes by privilege level, maps access control, and detects authorization patterns. Use as first step in any audit.