Evidence validation
Each finding carries source class, capture, confidence, attribution and a redaction state before it can drive action.
No active client context
Select or create a real customer case
Cloak Harbor does not load an arbitrary person by default. Select a saved client or start onboarding before reviewing evidence, OSINT results, actions, reports, or schedules.
Manual evidence capture
Add authorized evidence metadata to the configured Postgres backend. Public reads receive redacted summaries. This form does not fetch the URL or submit third-party requests; it stores a redacted evidence record through a server-side protected operator route.
Uses the server-side operator boundary. If persistence or server authorization is unavailable, the API returns a blocked/degraded result. externalActionTaken remains false for manual capture.
Evidence records
12
Data mode
synthetic
postgres_not_configured
Screenshot captures
6
redacted, files://
Avg confidence
84%
Source view
redacted
fixture · postgres_not_configured
| Evidence | Finding | Type | Source class | Evidence source | Confidence | State |
|---|---|---|---|---|---|---|
Aggregated people-search profile with home + relatives EXP-001 | screenshot | data-broker | example-broker.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 93% | redacted | |
Property record links residence to principal name EXP-002 | record-capture | public-record | example-records.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 88% | redacted | |
Reserved mobile number indexed against principal EXP-003 | screenshot | data-broker | example-broker.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 91% | redacted | |
WHOIS-style metadata exposes personal email EXP-004 | record-capture | registry | example-registry.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 86% | redacted | |
Officer filing names principal at residential address EXP-005 | screenshot | public-record | example-corp.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 90% | redacted | |
Relative profile cross-links to principal household EXP-006 | record-capture | data-broker | example-broker.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 78% | redacted | |
Reused credential pattern in synthetic breach corpus EXP-007 | screenshot | breach-corpus | example-breach.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 82% | redacted | |
Geotag-style clue in shared social photo EXP-008 | record-capture | social | example-social.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 74% | redacted | |
Legitimate news mention with limited exposure EXP-009 | screenshot | news | example-news.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 80% | redacted | |
Utility-style record confirms residence occupancy EXP-010 | record-capture | public-record | example-utility.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 84% | redacted | |
Reused handle ties pseudonymous accounts to principal EXP-011 | screenshot | social | example-handle.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 87% | redacted | |
Relative's broker profile leaks shared address EXP-012 | record-capture | data-broker | example-broker.example public/redacted sourceOpen evidence recordBrowser opens a branded case-manager view; machine clients can request JSON with format=json. | 76% | redacted |
Source inspection
Expand a record to inspect the persisted source, metadata, and available inline platform embed.
EVID-001
example-broker.example
data-broker93% confidenceredacted source
EVID-001
example-broker.example
Finding: EXP-001
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted data-broker fallback
Source: https://example-broker.example/profile/redacted
Single most reused source feeding downstream aggregators.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-002
example-records.example
public-record88% confidenceredacted source
EVID-002
example-records.example
Finding: EXP-002
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted public-record fallback
Source: https://example-records.example/parcel/redacted
Highest physical-risk exposure in the case.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-003
example-broker.example
data-broker91% confidenceredacted source
EVID-003
example-broker.example
Finding: EXP-003
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted data-broker fallback
Source: https://example-broker.example/phone/redacted
Direct path to account-takeover via OTP.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-004
example-registry.example
registry86% confidenceredacted source
EVID-004
example-registry.example
Finding: EXP-004
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted registry fallback
Source: https://example-registry.example/whois/redacted
Links online identity to physical contact details.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-005
example-corp.example
public-record90% confidenceredacted source
EVID-005
example-corp.example
Finding: EXP-005
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted public-record fallback
Source: https://example-corp.example/filing/redacted
Requires legal/trust partner remediation.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-006
example-broker.example
data-broker78% confidenceredacted source
EVID-006
example-broker.example
Finding: EXP-006
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted data-broker fallback
Source: https://example-broker.example/relative/redacted
Family exposure is the principal's stated top concern.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-007
example-breach.example
breach-corpus82% confidenceredacted source
EVID-007
example-breach.example
Finding: EXP-007
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted breach-corpus fallback
Source: https://example-breach.example/record/redacted
Most direct account-takeover vector.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-008
example-social.example
social74% confidenceredacted source
EVID-008
example-social.example
Finding: EXP-008
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted social fallback
Source: https://example-social.example/post/redacted
Low-cost remediation, useful awareness signal.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-009
example-news.example
news80% confidenceredacted source
EVID-009
example-news.example
Finding: EXP-009
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted news fallback
Source: https://example-news.example/article/redacted
Shows restraint: not everything is remediated.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-010
example-utility.example
public-record84% confidenceredacted source
EVID-010
example-utility.example
Finding: EXP-010
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted public-record fallback
Source: https://example-utility.example/record/redacted
Reinforces the critical property exposure cluster.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-011
example-handle.example
social87% confidenceredacted source
EVID-011
example-handle.example
Finding: EXP-011
Type: screenshot
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted social fallback
Source: https://example-handle.example/u/redacted
Collapses compartmentalization between personas.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
EVID-012
example-broker.example
data-broker76% confidenceredacted source
EVID-012
example-broker.example
Finding: EXP-012
Type: record-capture
Captured: 2025-01-06T09:00:00.000Z
Attribution: Redacted data-broker fallback
Source: https://example-broker.example/relative2/redacted
Recurrence risk if not coordinated across household.
External sources are linked but not auto-embedded to avoid unsolicited third-party requests from the operator browser.
Evidence capture stores authorized metadata in Postgres when configured. Protected source inspection is rendered server-side only; the browser never receives secrets. Public API record links remain redacted unless a trusted service supplies platform authorization.