Evidence Report
Understand each preserved evidence item.
An evidence report records an individual item within its acquisition and case context, so a reviewer can see what was preserved and which integrity information accompanies it.
Example output
Open the evidence report.
The demonstration PDF shows the parent case and acquisition references, evidence summary, package information, and hash values for one captured screenshot.
Open the report in a new tabWhat item-level reporting adds
Keep each item connected to the record around it.
Identity and context
The evidence report connects an evidence item to its parent case and acquisition, and records its type, owner, timestamp, product version, and description.
Package details
It records the evidence archive name, size, creation date, and cryptographic hash values.
Review relationship
The evidence report is one part of a wider acquisition record that can include screenshots, source artifacts, session video, network context, chain of custody, and an acquisition report.

Case Review
Navigate from item to acquisition.
Case Review can keep evidence items connected to their associated records and available artifacts, helping an authorized reviewer move between the details that matter to the case.
Explore the evidence package →See Eviquire in use →