Try live
Embed a verifiable audit-event stream into an image carrier and recover it later — registered, key-bound, fail-closed on wrong key. Not SIEM, not transform-proof, not undetectable stego.
Embed audit events into carrier pixels. Not a SIEM, not transform-proof, not undetectable steganography — fail-closed extraction under a wrong key.
Demo host: isolated demo host set by your deployment
Stego Audit Carrier · Evidence
Seal & extract an audit stream
Embed a verifiable audit-event stream into a carrier image, then extract it back with key-bound fail-closed semantics. The demo host runs in isolation — nothing is stored.
Not a SIEM, not transform-proof, not undetectable steganography. Sample data for demonstration only.
Carrier image
01No carrier loaded. Upload an image or generate a blank carrier (minimum 96×96).
Audit events
02
JSON array of event objects. Each event needs a type string and at
least one of payloadHash or payload.
Optional timestamp string. Load sample to fill an example.
Extract stream
03After sealing, the watermarked carrier and stream ID are held client-side. Provide the same key (if one was used) to extract the event stream. A wrong key fails closed.
Result
04Extracted stream
—
Carrier report
- Stream ID
- —
- Bytes embedded
- —
- Capacity remaining
- —
- Encrypted
- —
- Channel selection
- —
- Layers
- —
Raw response
—
Operator and workspace consoles are separate applications (pilot).
