Court Grade · Immutable by design

They can fake…
Voice. Photos. Videos.
They can't fake yours!

Everything you capture, including video, spoken words, photos, and the exact location where they were recorded, is fingerprinted and sealed on your phone before anything is uploaded. What you share with a client, insurer, or court can be verified by anyone in minutes using free tools already available on their computer. Change a single frame, word, or GPS coordinate, and the verification will prove it.

SHA-256 · NIST FIPS 180-4 RFC 3161 trusted timestamp FRE 902(13) & 902(14) pattern Sealed on device
Why this matters now

We live in the first era where seeing and hearing are not believing

AI can generate a video of something that never happened, clone a voice from a few seconds of audio, invent a photograph, and stamp any of it with a location on the other side of the country. That breaks trust in two directions at once — and both directions hurt you.

Fakes get believed

A convincing forgery now takes minutes and costs nothing. Video of damage that never happened. A "before" photo generated last night. A recorded voice saying words nobody ever said. Location data pointing at an address the phone was never near. If a fake can pass for real, every real record is worth less.

Real work gets doubted

The flip side is worse for you. Once everyone knows this material can be faked, the cheapest way to attack an honest report is to suggest it was. How do we know that video wasn't edited? That the audio is really you? That you were ever actually on site? Those are now free shots at your credibility.

You should not have to argue about whether your evidence is real.
You should be able to prove it.

The answer

One file that proves itself:
the ReportBundle.zip

From the moment a report is named to the moment the first report is generated, ScribeCam is quietly building a sealed archive of everything. It arrives as a single zip file that opens on any computer — no ScribeCam software required, ever.

ZIP SC-K3M9-A71-B1.zip SEALED Video Voice + words Photos Location Certificate

Think of it like an evidence bag with a tamper seal — except the seal is math, it covers every single item inside, and anyone in the world can test it for free.

Inside are your videos, your spoken words, every photo, your location and motion record, the finished report, and a certificate that explains exactly what is being certified. Every one of those files carries a digital fingerprint — the technical name is a SHA-256 cryptographic hash — computed on your phone, before anything left the device.

A fingerprint is a 64-character number produced from a file's exact contents. The same file always produces the same number. Change one pixel of one photo, one frame of one video, one word of the transcript, one coordinate of the track, and the number becomes completely different. That is the whole trick, and it is why it cannot be argued with.

How we do it

Chain of custody, from the first second of recording

Nothing here happens later, in an office, on a server. The phone that captured the evidence is the thing that fingerprints it, certifies it, and seals it. It works the same way for every report on the account, whoever filed it.

Step 1

You capture

Video, photos, your narration, and sensor readings — motion, compass, GPS, barometer — recorded on your device as you work.

Step 2

The phone transcribes

Your spoken words become a transcript on the device itself. The sensor stream carries its own tamper-evident hash chain, written while you record.

Step 3

Every file is fingerprinted

The instant your report is finished, each file is streamed through SHA-256 on the phone. The hasher self-tests against known answers first — a wrong fingerprint is worse than none.

Step 4

The receipt gets its own fingerprint

All the fingerprints are written into one itemized receipt (manifest.json). That receipt is then fingerprinted itself. That number is the root fingerprint — one number for the entire bundle.

Step 5

It's registered and sealed

The root fingerprint is registered with ScribeCam at that moment, an independent authority timestamps it, and the whole thing is zipped shut.

Everything, not just the pictures

Four kinds of evidence.
One seal over all of them.

A seal that only covered photos would leave three open doors. Every stream your phone records is fingerprinted individually and bound into the same sealed archive.

Video

The full, unedited recording of every take — not a trimmed export. Highlight clips are cut later and are labeled as derived, so the original is never confused with an edit of it.

Sealed 4e7a…c092

Voice

Your narration, in your own voice, inside the recording — plus the transcript the phone produced from it on the device. Both are fingerprinted, so the words can't drift from the audio.

Sealed b13f…7ad5

Photos

Every photo you took, grouped by recording, each with its own fingerprint — and each bound to the words you were speaking at the moment you took it.

Sealed 9c40…12be

Location & motion

GPS, compass heading, barometric pressure and movement, recorded continuously as you work. This stream carries its own tamper-evident hash chain, written while you record — then it is fingerprinted and sealed like everything else.

Sealed 05d8…ff31

Because all four are sealed together under one root fingerprint, they cannot be separated after the fact. Nobody can keep the video and quietly swap the location, or keep the photos and replace what you said about them. The set moves as one thing, or it fails as one thing.

What "tamper-evident" actually looks like

One pixel. Completely different number.

Here is the same photo twice. The second copy has exactly one pixel altered — invisible to any human eye, and to any software that just looks at the picture. The identical test catches one altered frame of video, one edited syllable of audio, or one changed GPS coordinate.

Verify For Free: https://app.scribecam.com/verify

Original photo — as sealed on the device
a3f1c9d47b0e25886fd1c4a97e3b6205d8c07f19ab54e6d3921fc8b70a5de413
Matches the receipt — byte-for-byte identical to sealing day
Same photo — one pixel changed
6b80e2145af93c7710d6b8e0329ac41f5e7d92086b3ca5f14e08d7629bc35a90
Does not match — this file has been altered since sealing

There is no third possibility. A file either reproduces its fingerprint or it does not. That is what "immutable" means here — not that nobody can ever change a copy, but that nobody can change one without it being provable.

What you actually receive

Open the zip. Everything is right there.

One folder, named for your report. No proprietary format, no viewer to install, nothing that expires.

Roof Inspection — 08-11-2026 — SC-K3M9-A71-B1.zip
└─ Roof Inspection — 4218 Marlow Ave/
   ├─ Start Here — How to Use This File.pdf
   ├─ Report/            the finished report + its data
   ├─ Media Files/
     ├─ Videos/        full, unedited recordings
     ├─ Video Clips/   highlight clips, by recording
     └─ Photos/        every photo, by recording
   ├─ Recording Data/     transcripts, sensors, image labels
   └─ Proof of Authenticity/
      ├─ Certificate of Authenticity.pdf
      ├─ manifest.json       the itemized receipt
      ├─ seal.json           root fingerprint + signatures
      └─ timestamp.tsr       independent RFC 3161 token

Start Here — How to Use This File

A plain-English cover document written for the person holding the zip, not for an engineer. What it is, what it proves, how to check it, and what to do with it. No jargon left unexplained.

Certificate of Authenticity

The formal document. It states the Bundle ID, the root fingerprint, the seal time, the account and the device — then lists every single file with its individual fingerprint, and prints the exact commands anyone can run to check them.

manifest.json — the receipt

One line per file, machine-readable. This is what a forensic examiner or opposing expert will actually work from. It also records how the report was generated, so nothing about the process is hidden.

seal.json + timestamp.tsr

The cryptographic proof files: the root fingerprint, the device signature, the ScribeCam registration record, and a signed timestamp token issued by an authority that has nothing to do with ScribeCam.

"Sealed" does not mean locked

This is an ordinary zip file. Open it whenever you like. Watch the videos. Print the report. Pull out one photo and email it to a client. Opening, reading, and copying never change a file, so they never harm a fingerprint and never weaken your record.

Sealed means any change is detectable — not that the archive is closed to you. Use the parts freely; just keep one intact copy of the whole zip somewhere safe, because the complete file is what proves everything.

Open standards only

Four independent locks —
and not one of them is ours

Every part of the seal uses published, international standards. Nothing here is a ScribeCam invention you have to take on faith, and nothing requires ScribeCam to still exist for your evidence to hold.

The fingerprints

SHA-256 · FIPS 180-4

The U.S. federal Secure Hash Standard. Built into every Mac and Windows computer already. One command checks any file, today or in ten years.

The device signature

Hardware-backed P-256 key

The root fingerprint is signed inside your phone's secure hardware, by a key that physically cannot leave the device. It ties the seal to the phone that did the recording.

The independent timestamp

RFC 3161 · public TSA

At sealing, an independent public Time Stamping Authority — not ScribeCam — cryptographically signs your root fingerprint with the date and time. That token ships inside your zip.

The registration record

One Bundle ID · one fingerprint, forever

The moment your bundle was sealed, its ID and root fingerprint were registered with ScribeCam. One ID can never be re-registered to a different fingerprint. We keep that record permanently.

Because it is all standard, a forensic professional can verify your evidence with tools they already own — and would already trust. Our verification page is the fastest way to check a bundle.
It is never the only way.

Proving it

Anyone can check it. In about a minute. For free.

A lawyer, an insurer, a judge, an opposing expert, or a client — no ScribeCam account, no login, no permission from you needed.

  1. Check it yourself, with no one's help

    Every Mac and Windows machine ships with the tool. Compute the fingerprint of any file in the bundle and compare it to that file's line in the receipt.

    shasum -a 256 "Proof of Authenticity/manifest.json"
    Get-FileHash "Proof of Authenticity\manifest.json"
  2. Check it against our registration record

    Enter the Bundle ID and that fingerprint on our public verify page. It answers only MATCH or NO MATCH — it reveals no account, no file list, no information about you. Nobody can use it to go fishing.

  3. Check the timestamp without us at all

    The RFC 3161 token can be validated straight against the issuing authority using standard open-source tools, with ScribeCam removed from the picture entirely.

    openssl ts -reply -in "Proof of Authenticity/timestamp.tsr" -text

Neither side can fake this alone. ScribeCam holds the fingerprint recorded at sealing. You hold the file that has to reproduce it. They only agree if nothing was touched.

Exactly what is certified

We tell you the limits, because a limit you can see is a limit nobody can ambush you with

An overstated claim is worse than a modest one. The certificate says precisely what it covers — and precisely what it does not.

The sealed window

Inside the sealFrom the moment the report is created, through the first generated report — every recording, photo, transcript, sensor reading, clip and the report itself.
Outside the sealAnything edited or produced afterward. Later versions are deliberately not certified by this bundle.

Captured evidence

Video, photos, transcripts and sensor records created on your device. Real camera, real phone, real moment — fingerprinted on that same phone before touching the internet. Any alteration of any file is detectable by anyone.

Derived material

The written report, its PDF, and the highlight clips. These are produced by ScribeCam from the capture. The certificate proves exactly what the report said at seal time and which captured inputs it came from — and never pretends the writing is part of the capture.

Blurring those two would be the easy sales pitch. It would also be the first thing an opposing expert took apart. The capture claim is strong enough standing on its own.

What this means legally, in plain English

Courts have long needed a way to trust digital records without calling a parade of witnesses. U.S. courts recognize a pattern for records that prove themselves through digital fingerprints rather than testimony alone — Federal Rules of Evidence 902(13) and 902(14). The certificate inside every bundle is written to that pattern.

In practice: your report does not rest on anyone simply taking your word. If the other side claims a video was edited or a photo was swapped, the fingerprints answer — recompute and compare, in front of anyone, with free tools.

No document can promise a court will admit anything; admissibility is always the court's decision. What this gives your lawyer is the technical foundation those rules ask for, prepared automatically, from the moment of capture — not reconstructed months later when someone finally asks.

Where your copy lives

You always have it. In two places.

You don't have to remember to save anything. The bundle is built, sealed and delivered without you lifting a finger.

In the ScribeCam web app

The moment the bundle is built on your phone, a copy is sent to ScribeCam. Download it any time from your Reports for as long as your plan includes storage — on any computer, no phone required.

Web app Reports Download bundle

In your own cloud — automatically

Turn on iCloud or Google Drive in the app once, and ScribeCam creates a ScribeCam folder in your cloud and drops every new sealed bundle into it. That copy belongs entirely to you — it stays yours even if the report is later deleted from ScribeCam. Opt-in only; we never place files in your personal cloud without permission.

Settings iCloud Settings Save Report Bundles to iCloud
Files iCloud Drive ScribeCam Report Bundles

Keep one copy safe

After your plan's storage period ends, the copy you are holding may be the only one. What ScribeCam keeps permanently, on every plan, is the registration record — so a bundle can always be confirmed against us, even long after the files themselves have left our storage.

Straight answers

Common questions

Do I need special software to open or check a bundle?

No. It is an ordinary zip file, and every fingerprint check uses a command that is already built into macOS, Windows and Linux. Nothing to install, nothing to buy, nothing that expires. That is deliberate — evidence that needs our software to be believed is not evidence, it is a dependency.

What if ScribeCam disappears tomorrow?

Your bundle still verifies. The fingerprints are an open federal standard, and the independent timestamp comes from a third-party authority, not from us. Our registration record is a convenience and a corroborating witness — it is not the thing holding your proof together.

Could I edit a photo and just recompute the fingerprints to hide it?

No — and this is the part that matters. Changing the photo changes its fingerprint, which changes the receipt, which changes the receipt's own fingerprint (the root). To hide the edit you would have to consistently forge the file, the receipt, the certificate, the timestamp signed by an outside authority, and ScribeCam's registration record — the last two of which you do not control.

Does the AI write any part of the evidence?

No. AI writes the report — the narrative interpretation of what you captured — and the bundle labels it clearly as derived material. The evidence itself (video, photos, your spoken words, sensor data) is recorded by your device's camera and microphone and is never AI-generated. The certificate keeps those two things separate on purpose.

Someone claims the video was edited, or the voice was cloned. What do I do?

You hand over the bundle and let them check it themselves. The video file and the audio inside it were fingerprinted on your phone at capture. If the copy they are holding reproduces that fingerprint, it is byte-for-byte the recording your device made — no edit, no splice, no re-encode, no synthesised audio. If it does not reproduce it, the file they have is not yours. You never have to win that argument by talking.

Does this prove I was actually at the property?

Your device records GPS, compass heading, barometric pressure and motion continuously while you capture, and that stream carries its own tamper-evident hash chain written as it is recorded. It is then sealed alongside the video, photos and transcript under the same root fingerprint. So the location record in your bundle is provably the one your device produced at the moment of capture — unchanged since, and impossible to detach from the footage it belongs to. That is a far stronger position than a photo with an EXIF tag anyone can rewrite in seconds.

What exactly is the Bundle ID?

A permanent reference for that one sealed archive — your report number plus a seal number, like SC-K3M9-A71-B1. It is created on the device before the first report even exists, it is printed on the certificate, and it can never be re-registered to a different fingerprint.

Does using files from the bundle break the seal?

Never. Open it, watch it, print it, copy a photo out and send it wherever you need. Reading a file does not change it. Just keep one intact copy of the complete zip — that whole file is the thing that proves the parts.

Does the verify page expose my report to whoever checks it?

No. It confirms or denies the two values the visitor already brought with them, and nothing else — no account, no file list, no report contents, not even whether a Bundle ID exists on its own. Someone can prove your evidence is authentic without being able to see any of it.

Evidence that argues for itself.

Walk the site. Talk it through. Hand over a report nobody can wave away.