Web-forensics use case
Acquire evidence from online marketplaces and platforms
Eviquire can preserve public and authorized marketplace evidence including listings, seller and buyer profile presentation, orders, messages, reviews, disputes, account actions, platform decisions and supplied exports. The acquisition records what the platform displayed to the selected account and does not independently verify identity, ownership, payment settlement, inventory or provider backend events.
What this use case means
Eviquire can preserve public and authorized marketplace evidence including listings, seller and buyer profile presentation, orders, messages, reviews, disputes, account actions, platform decisions and supplied exports. The acquisition records what the platform displayed to the selected account and does not independently verify identity, ownership, payment settlement, inventory or provider backend events.
Marketplace content combines public listings with account-specific prices, recommendations, order details and dispute workflows. Sellers can change names, images, variants and stock, while platforms remove content or mask parties. Evidence must preserve the path from platform and account to listing, transaction or dispute and distinguish public observation from authenticated records.
Common situations
When this workflow is useful
- Counterfeit, fraud, non-delivery, unsafe-product, impersonation, review or platform-enforcement matters
- Preserving listings and seller context before takedown or modification
- Documenting an authorized order, dispute or account restriction workflow
Recommended process
A documented acquisition workflow
- Define public and private scope
Identify platforms, accounts, listings, sellers, orders, messages, disputes, dates and personal-data limits.
- Record market context
Preserve locale, currency, delivery region, login state, role, filters and search or referral path.
- Acquire source relationships
Navigate platform to seller, listing, variant, order, message, review or dispute, preserving identifiers and surrounding context.
- Preserve authorized files
Download invoices, labels, messages, images and platform reports where supplied.
- Verify and correlate
Hash files and compare disputed payment, delivery, identity or inventory claims with independent records.
Technical guidance
Conditions that affect marketplace evidence
Confirm these points during a short pre-acquisition validation on the authorized workstation.
Personalized presentation
Price, availability, search order and shipping can depend on account, region, device and time.
- Record locale and login state.
- Capture selected variant.
- Avoid generalizing personalized results.
Mutable identity and listings
Display names, profiles, images and listings can change or be recycled.
- Preserve stable identifiers.
- Capture seller and listing relationships.
- Corroborate identity separately.
Transactions and platform decisions
Order, refund and enforcement screens reflect platform presentation, not necessarily external settlement or delivery.
- Preserve supplied documents.
- Record status semantics.
- Seek processor or carrier evidence when needed.
Reviewable output
What the evidence package should explain
Marketplace context
Platform, account role, locale, currency, listing or order IDs and navigation.
Content and chronology
Seller, listing, variants, reviews, messages, dispute and platform-action presentation.
Transaction files
Authorized invoices, labels, images and reports preserved with hashes.
Review package
Session video, timestamps, limitations and custody records.
The exact artifacts depend on the source, plan, configuration, authority, and investigation. A report should identify what was and was not collected.
Professional considerations
Authority, proportionality, and limitations
- Minimize buyer, seller, payment and delivery information unrelated to the matter.
- A platform profile or display name is not conclusive identity evidence.
- Do not place orders, contact parties or alter disputes unless expressly authorized.
Important: Eviquire supports a documented technical process. It does not establish identity, truth, culpability, infringement, or admissibility, and it does not replace legal advice or a validated organizational procedure.
Standards and primary guidance
Online evidence procedures should be validated for the organization and matter. Useful starting points include SWGDE guidance for acquiring online content, ISO/IEC 27037:2012, and NIST digital-evidence resources.
Frequently asked questions
Can Eviquire preserve a listing before takedown?
Yes, as displayed, with seller, variant, price and source context.
Does a seller name prove identity?
No. Preserve stable identifiers and seek corroboration.
Can order and dispute records be acquired?
Yes through an authorized account and defined scope.
Why record locale and currency?
They can change pricing, availability and delivery presentation.
Does the portal prove payment or delivery?
Not necessarily; processor or carrier records may be needed.
Who uses this workflow?
Relevant professional roles
This acquisition workflow is commonly relevant to these teams. The appropriate authority, scope, procedure, and review requirements still depend on the matter.
Private investigators
Turn online findings into organized, verifiable evidence and professional client reports.
See role-specific guidance →Copyright and trademark professionals
Preserve listings, branding, seller context, media, and related pathways before takedown.
See role-specific guidance →Forensic experts
Acquire online evidence with technical context, integrity verification, custody records, and reporting.
See role-specific guidance →Law enforcement
Preserve volatile online evidence for authorized criminal and intelligence investigations.
See role-specific guidance →