FILE ANALYSIS TOOLS

Inspect a web address or a file.

Capture a live webpage or inspect a file in your own browser. Every tool states the source and limit of the record it shows.

01

Web Evidence Recorder

Stores a live webpage with its screenshot, HTML, text, HTTP, DNS, and TLS records, then compares it with the previous capture of the same address.

  • Full-page screenshot
  • Domain, email, and file relationships
  • SHA-256 evidence package
Open tool
02

Web Change Monitor

Captures a public address automatically every 6, 12, or 24 hours and compares text, hashes, links, and page structure with the previous record.

  • Scheduled live capture
  • Change history
  • 30-day monitor lifetime
Open tool
03

Redirect Chain

Extracts HTTP and browser redirects step by step and keeps host changes, status codes, and the final page in one record.

  • HTTP and browser steps
  • Host transitions
  • Final-page screenshot
Open tool
04

Web Supply Chain

Extracts scripts, frames, stylesheets, CDNs, and network requests, then separates first-party and third-party components in a graph.

  • Live network records
  • Script and frame inventory
  • SRI and security headers
Open tool
05

Case Correlation Desk

Combines shared domains, URLs, IP addresses, email addresses, SHA-256 values, and certificate records from web evidence, sandbox, and JSON packages locally.

  • Multiple real packages
  • Shared-indicator graph
  • Downloadable correlation record
Open tool
06

ShadowTrace Media Timeline Analysis

Checks images, video, and audio on your device. It shows frame, pixel, motion, and audio events on one timeline. It checks older source-page copies only when you allow it.

  • Local frame and audio measurements
  • Open workflow stages
  • Downloadable ZIP report
Open tool
07

Visual and Video Evidence Lab

Reviews images and videos locally across provenance, metadata, compression, and frame patterns. A bounded model review is available after explicit consent.

  • Local synthetic-media preliminary review
  • Model identity and sample scores
  • Downloadable evidence package
Open tool
08

File and Document Review

Opens one file and shows identity, structure, findings, observables, tool records, and the evidence graph on the same screen.

  • APK, IPA, PE, .NET, and ELF
  • PDF, Office, email, and PCAP
  • YARA, ClamAV, and downloadable evidence
Open tool
09

Version Comparison

Compares two application releases and separates new permissions, domains, imports, package paths, and signature changes.

  • Two real files
  • Added and removed records
  • Machine-readable JSON output
Open tool
10

Container Image Inspection

Opens Docker or OCI image layers and extracts the final package inventory, binaries, and redacted secret candidates.

  • Layer changes
  • DPKG and APK package inventory
  • ELF/PE and secret candidates
Open tool