CASE WORK
Downloads and startup recovery

Current private engineering-alpha interface shown with synthetic demonstration data. The path-free ledger records case downloads and flags same-case exact-byte duplicates.
Browser and OSINT downloads
Browser Mode downloads are user-initiated and outside cases, with current-run progress, cancel, retry, and Finder reveal. There is no persistent UI history.
OSINT downloads require consent with cancel as the default. They use normalized case-local names, hashes, research outcomes, exact-byte duplicate warning, never auto-open, and a path-free Download Ledger.
Startup recovery boundary
Before a case session or page opens, startup recovery inspects bounded evidence and download locations. Exact verified layouts may offer recovery of one prepared unlogged download, one attributed interrupted evidence bundle, one exact quarantine retention, or separately confirmed macOS Trash disposition for one verified retained download or failed-evidence bundle.
MHTML is never replayed. Trash is not secure erase. Legacy, corrupt, ambiguous, and unsupported material is preserved and blocking.
Important
Startup recovery is not backup, export, portable recovery, or replacement-Mac restore.
