Evidence Vault

From incident to legal-ready evidence in one click.

Select any flagged incidents from your SOC dashboard. Evidence Vault generates a structured PDF package with chain-of-custody metadata, AI analysis, actor attribution, and source links — ready for counsel in seconds.

Get Early Access → See Sample Report
IPShield AI · Evidence Package
IP LEAKAGE EVIDENCE REPORT
Generated: Fri, 27 Jun 2026 18:45:12 UTC  |  Case Ref: IPSH-1751047512388  |  Requested By: shreyas.kumar@tamu.edu
Executive Summary
Total Incidents Documented3
Critical Severity1
High Severity2
Date Range2026-06-27T14:02:11Z — 2026-06-27T18:33:47Z
Incident Documentation
Critical Model weights pushed to public repo
Source: GitHub  ·  Actor: jsmith  ·  Confidence: 97%
Detected: 2026-06-27T14:02:11Z
Developer pushed a 2.3GB .pt file matching the signature of the proprietary transformer model to a public GitHub repository. This constitutes complete model weight exposure.
High API key shared in Slack channel
Source: Slack  ·  Actor: mwilson  ·  Confidence: 94%
Detected: 2026-06-27T16:19:55Z
User shared what appears to be an Anthropic API key and internal database connection string in a general Slack channel accessible to 47 members.

How It Works

Generate a report in four steps

1

Open Your Dashboard

All flagged incidents live in your IPShield Monitor SOC dashboard with full AI analysis.

2

Select Incidents

Check off any combination of incidents by severity, source, or time range.

3

Click Export

Evidence Vault assembles the PDF with case reference, metadata, and AI reasoning.

4

Share with Counsel

Download the signed PDF or share the secure Supabase storage link directly.


What's Inside Every Report

Built for legal proceedings, not just dashboards

🔐

Chain of Custody

Every report includes a unique case reference ID, UTC timestamps, and the name of the requesting party for admissibility.

🤖

AI Reasoning

Claude's full classification rationale is embedded per incident — explaining exactly why each event was flagged and at what confidence.

👤

Actor Attribution

Every incident documents the GitHub user, Slack user ID, or Drive actor responsible — with source resource links.

📊

Executive Summary

Cover page with incident counts by severity, date range, and case reference — ready to attach to an HR or legal filing.

☁️

Secure Cloud Storage

All evidence PDFs are stored in encrypted Supabase Storage with access logging. Share by URL or download directly.

⚖️

Attorney-Client Ready

Reports include a privilege notice and are structured to align with common legal hold and discovery requirements.


Early Access

Your next IP case deserves airtight evidence.

Request access and be among the first teams to use Evidence Vault in a real investigation.

Request Access → See IPShield Monitor →