How to verify an export
The short answer: Each EvidentlySo PDF names the capture file it came from and prints that file’s fingerprint (a SHA-256 code). To check it, get the capture file, compute its fingerprint with a free built-in tool, and compare. If the two codes match exactly, the capture file is the same unchanged file the PDF names as its source.
What you need
- The PDF
- The capture file it names. It’s in the customer’s Dropbox, in the EvidentlySo app folder. [APP: confirm the exact folder and file name format]
Find the fingerprint in the PDF
It’s printed on [APP: confirm location, e.g. the first page / the record of what’s included], labeled “Capture file fingerprint (SHA-256).”
Compute the capture file’s fingerprint
Windows
Open PowerShell and run:
Get-FileHash "C:\path\to\capture-file" -Algorithm SHA256
Mac
Open Terminal and run:
shasum -a 256 /path/to/capture-file
Linux
Run:
sha256sum /path/to/capture-file
Compare
The code from the tool should match the code printed in the PDF, character for character. Letter case doesn’t matter.
- They match: the capture file hasn’t changed since the PDF was made.
- They don’t match: this isn’t the same file, or it has been changed.
What this does and doesn’t show
“The fingerprint lets anyone with the archived capture file confirm it is the exact, unchanged file this PDF names as its source. It does not show the capture is complete. For example, messages deleted from the phone before capture won’t be in it.”
Related: For attorneys · FAQ
This is general information, not legal advice.