Wiener-Gate
A multi-brand online pet-purchase fraud network, documented as a criminal supply chain rather than a single suspect.
Nothing in this corpus asks to be believed on authority
Every collected artifact is hashed with SHA-256. Every hash is published. A machine re-checks all of them on every change and again every week. The archive is held somewhere that cannot be deleted, by anyone, including the people who put it there, until 2027-08-25.
Three manifests, three scopes
| Manifest | Covers | Generated |
|---|---|---|
| MANIFEST.csv | The 140-file collected corpus: filename, folder, sha256, bytes | at capture |
| NETWORK_CAPTURE_MANIFEST.txt | Every file from the four live sites | 2026-08-24T15:27:48Z |
| EXPORT_MANIFEST.txt | Every evidence and document file in the repo at handoff | 2026-08-25T04:54:40Z |
An Evidence Integrity job runs on every push touching evidence, plus Mondays 06:00 UTC. It fails closed on altered bytes or unexplained absence. The allowlist of expected-absent files is hardcoded, not derived from the ignore rules — an integrity control must not be bypassable by the change it is meant to police.
Backblaze B2, encrypted with age, compliance-mode Object Lock until 2027-08-25. The write credential cannot delete: a delete attempt against the stored archive returns 401 unauthorized. Weekly full re-download and byte-for-byte re-hash, Mondays 07:10 UTC.