// artifact family

container registry / artifact repository forensics

10 browser-only forensics tools in this catalog group — browse by artifact family when you know the kind of evidence you are working with, not the investigation pattern.

tools
10
catalog slugs
10
processing
local · in browser

tools in this family

ordered as in the forensics catalog. every tool runs locally — no upload, no account.

  1. jfrog artifactory access log forensic analyzerdrop artifactory access log export · parse repo + artifact + user action · runs locally
  2. aws ecr image scan forensic analyzerdrop ecr image scan export · parse finding + severity + image digest · runs locally
  3. azure container registry audit forensic analyzerdrop acr audit log export · parse repository + operation + caller · runs locally
  4. gcp artifact registry audit forensic analyzerdrop gcp artifact registry audit export · parse package + version + principal · runs locally
  5. quay container registry audit forensic analyzerdrop quay audit log export · parse repo + tag + robot account · runs locally
  6. github container registry audit forensic analyzerdrop ghcr audit export · parse package + actor + download/push · runs locally
  7. registry image signature verification anomaly detectordrop registry attestation export · detect unsigned/unverified image pushes · runs locally
  8. registry malicious layer upload detectordrop registry push log export · detect suspicious layer upload bursts · runs locally
  9. multi registry image provenance correlatordrop 2+ registry audit exports · correlate digest + tag lineage · runs locally
  10. cross registry tag mutation correlatordrop registry + ci exports · correlate tag moves to build pipeline · runs locally
ready