How it works
From validated finding to defensible referral.
A controlled workflow converts analytic output and supporting records into a verifiable evidence package.
01
Ingest
Receive the finding, source files, metadata, and human review decision.
02
Normalize
Structure records into a common evidence model.
03
Verify
Validate required fields, relationships, timestamps, and source references.
04
Seal
Hash and sign artifacts while preserving chain-of-custody events.
05
Package
Produce a referral bundle with manifest and validation materials.
Illustrative package contents
Package contents are configurable by agency, program, matter type, and legal workflow.
| Component | Purpose | Example content |
|---|---|---|
| Referral summary | Explains why the matter is being referred | Finding, risk basis, involved entities, program exposure |
| Evidence manifest | Indexes every included artifact | File identifier, source, timestamp, hash, status |
| Provenance record | Documents origin and transformation history | Source system, capture event, analyst action, system action |
| Integrity verification | Supports tamper detection and repeat verification | Hash values, signature information, validation result |
| Chain-of-custody history | Tracks controlled possession and workflow changes | User, role, event, date, time, reason |
| Certification artifacts | Supports legal and evidentiary review | Configured certification record and supporting metadata |
Human in the loop
Automation does not replace agency judgment.
IntegrityHawk is designed to preserve and document human determinations, not to make prosecutorial or legal decisions. Agencies retain authority over referral thresholds, evidence sufficiency, legal review, and downstream action.
1controlled evidence record
Everyaction attributable
Repeatableverification process