// artifact family

email archiving / journaling forensics

10 browser-only forensics tools in this catalog group — browse by artifact family when you know the kind of evidence you are working with, not the investigation pattern.

tools
10
catalog slugs
10
processing
local · in browser

tools in this family

ordered as in the forensics catalog. every tool runs locally — no upload, no account.

  1. veritas enterprise vault journal export forensic analyzerdrop enterprise vault journal export · parse archive id + envelope + retention class · runs locally
  2. mimecast email archive export forensic analyzerdrop mimecast archive search export · parse message id + route + retention · runs locally
  3. proofpoint archiving compliance export forensic analyzerdrop proofpoint archive export · parse policy + disposition + legal hold · runs locally
  4. microsoft purview exchange journal export analyzerdrop exchange journal mailbox export · parse envelope + recipient + transport · runs locally
  5. barracuda message archiver export forensic analyzerdrop barracuda archiver export · parse message store + index + hash · runs locally
  6. google vault matter export forensic analyzerdrop google vault matter export · parse account + query scope + export batch · runs locally
  7. smarsh archiving export forensic analyzerdrop smarsh connected archive export · parse channel + participant + policy tag · runs locally
  8. email journal deletion anomaly detectordrop archive audit log export · detect purge bursts + hold bypass · runs locally
  9. legal hold overlap correlatordrop 2+ legal hold exports · correlate custodian + matter overlap · runs locally
  10. multi archive mailbox timeline correlatordrop 2+ archive exports · unified message timeline graph · runs locally
ready