SignalRoom

A local security investigation workspace that keeps questions, Splunk evidence, and AI-assisted reasoning in view together.

Public source

What it's for

An analyst should be able to follow an answer back to the data and the steps that produced it, then carry useful context into the next investigation.

Where it stands

Public source for an early local, single-user release line. It combines bounded read-only Splunk tools, retained evidence, cases, and local models; setup requires your own environment. It is not a hosted service here.

What comes next

Keep sharpening the evidence trail, model evaluation, and the path from investigation to reviewable detection work.

View source on GitHub ↗

← Back to all projects