witness-cli
PulseGate's liveness check found it on 3 Oct 2026; it is registered on GitHub and PyPI and has been in the index since 15 Aug 2026. How this is checked
witness-cli is an open-source DFIR command-line agent that reports only claims supported by tool output. It helps security and incident-response practitioners verify evidence, preserve provenance, and reduce unsupported conclusions in forensic workflows.
Inferred · not functionally tested
Overview
6 featuresPurpose: Preventing unsupported or hallucinated claims in digital forensics and incident-response reports.
Inferred · not functionally tested
Audience: digital forensics and incident-response practitioners
Inferred · not functionally tested
Functions: data_extraction
Inferred · not functionally tested
Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: indicated (inferred, not tested)
Recorded constraints: pricing: open_source · license: MIT · platforms: CLI · deployment: cli, self_hosted
Constraint provenance is unknown; confirm requirements with the publisher.
Record sources: pypi.org · github.com. These links do not verify the individual claims.
witness-cli is a Malware analysis & digital forensics project. Inferred · not functionally tested: It focuses on preventing unsupported or hallucinated claims in digital forensics and incident-response reports. Inferred · not functionally tested: witness-cli is an open-source project aimed at digital forensics and incident-response practitioners. Basis unknown · not verified: witness-cli is open source under the MIT license. Basis unknown · not verified: It ships for the command line, and it can be self-hosted.
Behind witness-cli is Vinay Vobbili, and it first shipped in 2026. The project is developed in the open on GitHub with 14 commits in the last 90 days. Inferred · not functionally tested: Among its 6 catalogued features are evidence-based reporting, tool output verification, and digital forensics.
Summary written by a language model from the project’s public pages.
Tasks: Inferred · not functionally tested
- Evidence-based reporting
- Tool output verification
- Digital forensics
- Incident response
- Memory forensics
- Provenance tracking
Topics: Inferred · not functionally tested
Built with & integrations
Trust & compliance
Indexing history
1What PulseGate has recorded for this listing
Frequently asked questions about witness-cli
- What does witness-cli do?
- Inferred · not functionally tested: Witness-cli focuses on preventing unsupported or hallucinated claims in digital forensics and incident-response reports. It is catalogued under Malware analysis & digital forensics on PulseGate.
- Who should use witness-cli?
- Inferred · not functionally tested: witness-cli is an open-source project built for digital forensics and incident-response practitioners.
- Is witness-cli free?
- Basis unknown · not verified: Yes — witness-cli is open source under the MIT license and free to use.
- What platforms does witness-cli run on?
- Basis unknown · not verified: witness-cli runs on the command line. It can also be self-hosted.
- Is witness-cli still maintained?
- PulseGate's liveness check found it on 3 Oct 2026. Its GitHub repository shows 14 commits in the last 90 days.
- Who develops witness-cli?
- witness-cli is developed by Vinay Vobbili.
- How long has witness-cli been around?
- witness-cli first shipped in 2026.
- Is witness-cli open source?
- Basis unknown · not verified: Yes — witness-cli is open source under the MIT license, developed on GitHub.
Similar projects
Closest matches by what these projects do