Skip to content

Labels

Labels

  • accuracy

    Accuracy / detection-rate work
  • architecture

    Design decisions about the agent loop / boundary
  • area:agent

    Area: dart-agent (loop)
  • area:audit

    Area: dart-audit (chain-of-custody log)
  • area:corr

    Area: dart-corr (correlation engine)
  • area:docs

    Area: documentation / wiki
  • area:mcp

    Area: dart-mcp (typed forensic surface)
  • area:playbook

    Area: dart-playbook (YAML rules)
  • area:tests

    Area: test suite / CI
  • audit-chain

    SHA-256 audit chain integrity, replayability
  • bug

    Something isn't working
  • case-study

  • correlation

    dart-corr — DuckDB joins, contradiction detection
  • dataset

    Test datasets — CFReDS, Ali Hadi, M57
  • discussion

    Needs design discussion before implementing
  • documentation

    Improvements or additions to documentation
  • duplicate

    This issue or pull request already exists
  • enhancement

    New feature or request
  • evaluation

  • from-cfreds-benchmark

  • good first issue

    Good for newcomers
  • good-first-issue

    Good first contribution
  • hackathon

    Specifically for SANS FIND EVIL! 2026 deliverable
  • help wanted

    Extra attention is needed
  • help-wanted

    Community help welcome
  • invalid

    This doesn't seem right
  • live-mode

    Real Claude API + MCP stdio integration
  • mcp-surface

    Adding/changing the typed forensic function surface
  • mitre-attack

    MITRE ATT&CK mapping / coverage
  • opsec

    Information disclosure / OPSEC concerns