CASE WORK
Evidence and research records

Current private engineering-alpha interface shown with synthetic demonstration data. The Evidence Library freshly verifies trusted metadata and bundle bytes before preview.
Research history
Case-local bounded events are append-only. Repeated visits are retained, and new records carry the analyst ID. The fsync-backed SHA-256 chain is tamper-evident, not tamper-proof or independently signed. A durable log failure blocks case activity.
Evidence capture
A successful evidence capture creates a screenshot, MHTML, manifest, and SHA-256 checksums with a matching external research-log anchor. Staging is never reported as success. Dynamic pages can change; very large full-page screenshots may reduce resolution or use a labelled viewport fallback.
Verification and preview
Evidence Library filters metadata and freshly verifies bytes and record. PNG preview opens only in a nonpersistent, no-network window. MHTML is never replayed.
No forensic certification or court-admissibility claim is made. Notes, tags, full-content search, and export are not available.
