// artifact family

service mesh security forensics

10 browser-only forensics tools in this catalog group — browse by artifact family when you know the kind of evidence you are working with, not the investigation pattern.

tools
10
catalog slugs
10
processing
local · in browser

tools in this family

ordered as in the forensics catalog. every tool runs locally — no upload, no account.

  1. istio telemetry access log forensic analyzerdrop istio telemetry export · parse source + destination + response code · runs locally
  2. istio envoy sidecar log forensic analyzerdrop envoy sidecar log export · parse cluster + route + upstream · runs locally
  3. linkerd proxy access log forensic analyzerdrop linkerd proxy log export · parse dst + src + tls status · runs locally
  4. consul service mesh intention forensic analyzerdrop consul intention export · parse source + destination + action · runs locally
  5. kuma mesh traffic log forensic analyzerdrop kuma traffic log export · parse mesh + service + protocol · runs locally
  6. service mesh mtls bypass detectordrop mesh access log export · detect plaintext/mtls downgrade paths · runs locally
  7. service mesh unauthorized route detectordrop mesh route export · detect routes without authz policy · runs locally
  8. sidecar injection anomaly detectordrop mesh workload export · detect missing/unexpected sidecar injection · runs locally
  9. multi service mesh traffic timeline correlatordrop 2+ mesh traffic exports · unified service call timeline graph · runs locally
  10. cross service mesh identity correlatordrop mesh + iam exports · correlate spiffe/workload identity to accounts · runs locally
ready