What it's for
An analyst should be able to follow an answer back to the data and the steps that produced it, then carry useful context into the next investigation.
Where it stands
Public source for an early local, single-user release line. It combines bounded read-only Splunk tools, retained evidence, cases, and local models; setup requires your own environment. It is not a hosted service here.
What comes next
Keep sharpening the evidence trail, model evaluation, and the path from investigation to reviewable detection work.
View source on GitHub ↗