{"id":17339,"plugin_id":"plugins_6a7624ebb8648191918bc29197f7427e","kind":"skill","collection_source":null,"comparison_source":null,"observed_at":"2026-09-30T23:14:06.798Z","digest":"81bc9178cee52ad623c61c2ec4b2678bc5d800934d86923349766c9acff9361f","against":null,"payload":{"description":"Build and audit defensible chain-of-custody records for physical and digital evidence. Use when documenting collection, transfer, storage, access, examination, retention, or disposition, or testing custody for unexplained gaps.","included_files":[{"relative_path":"agents/openai.yaml","size_in_bytes":283}],"name":"chain-of-custody-documenter","skill_md_contents":"---\nname: chain-of-custody-documenter\ndescription: >-\n  Build and audit defensible chain-of-custody records for physical and digital\n  evidence. Use when documenting collection, transfer, storage, access,\n  examination, retention, or disposition, or testing custody for unexplained gaps.\n---\n\n# Chain of Custody Documenter\n\nCreate a contemporaneous item-level audit trail. Do not promise admissibility;\nthe governing court, tribunal, regulator, or policy controls that decision.\n\n## Gather the record\n\nAsk for the jurisdiction and proceeding, collection authority, item and source,\ncollector, date, time zone, location, condition, packaging, seal, identifiers,\ndevice or account state, acquisition method, tools, versions, images or exports,\nhashes, handlers, transfers, access, storage, examinations, and disposition.\n\n## Build the custody trail\n\n1. Assign one stable evidence ID to each item and derivative.\n2. Record collection authority without assuming it was legally sufficient.\n3. Describe condition, location, collector, time, packaging, seals, photographs,\n   and unique identifiers.\n4. Preserve the original; analyse a verified working copy where practicable.\n5. For digital material, record acquisition, write protection, tool versions,\n   source and destination media, and hashes at acquisition and later verification.\n6. Log every handoff with from, to, date, time zone, purpose, location,\n   acknowledgements, and container or seal condition.\n7. Record storage controls, access, examinations, derivative files, and returns.\n8. Identify missing links, delay, broken seals, hash mismatch, undocumented\n   access, clock issues, and other incidents.\n9. Record the retention rule and disposition authority; never infer permission\n   to destroy from silence.\n\n## Deliverables\n\nProvide a master register, per-item custody forms, transfer receipts, digital\nhash manifest, access and examination log, incident log, and retention or\ndisposition schedule. Mark unknown fields explicitly.\n\n## Guardrails\n\nNever backdate, invent a handler, silently close a gap, alter the original, or\ntreat a hash as proof of provenance, authorship, or truth. Minimise personal and\nprivileged data. Escalate integrity failures and use qualified forensic and\nlegal reviewers where collection or admissibility is contested.\n"},"changes":[],"summary":"First saved snapshot. No earlier version is available for comparison.","summary_kind":"deterministic","summary_metadata":{}}