About ByteCase

Workflow software built around the parts of a forensic case that are easiest to scatter.

ByteCase supports documentation, verification, validation, examiner-authored records, presentation, and workflow visibility around the forensic platforms examiners already use.

Why it exists

The problem was not theoretical.

Forensic work can be technically sound while the supporting record remains fragmented. Requests may arrive through email. Acquisition details may be split across handwritten notes, screenshots, report fragments, and tool logs. Hash values may be displayed once and never preserved in a form that can be reopened later.

When a case returns months later, the examiner may need to reconstruct work that was already completed. ByteCase is being built to reduce that reconstruction.

Product principles

Rules that shape every module.

01

Examiner-focused

Start with recurring operational friction rather than a feature list looking for a problem.

02

Documentation first

Create records that help explain what happened, when it happened, and what remains with the case.

03

Repeatable by design

A common task should not require rebuilding the form, folder, checklist, or report structure every time.

04

Local and portable

Important records should remain visible and useful outside an opaque application database.

05

Modular growth

Each tool should provide value independently before integration adds another layer of complexity.

06

Honest boundaries

Software can structure the work without replacing examiner judgment, policy, validation, or legal review.

The suite

Case modules and laboratory-wide tools.

View every product →

Case workflow

Records connected to an individual case

  • Intake and request context
  • Acquisition documentation
  • Saved hash manifests and re-verification
  • Examiner-authored notes
  • Timeline and exhibit preparation
  • Workflow and closeout review

Standalone laboratory tools

Knowledge reused across many cases

  • Tool and workflow validation records
  • Version and environment history
  • Known limitations and exceptions
  • External validation references
  • Reusable laboratory guidance

Built by Forensics Byte

Created from direct digital-forensics and public-safety technology experience.

ByteCase was created by Matt McBride, a digital forensics and public-safety technology professional whose work spans evidence acquisition, forensic workflow support, integrity verification, cybersecurity, policy, technology administration, and practical software development.

Meet the creator →
ByteCase ByteCase by Forensics Byte

Built in public

Real feedback should shape the product direction.

Repetitive documentation work, missing request information, difficult handoffs, validation gaps, and case records that are hard to reconstruct are all useful signals.