DetectHub is an enterprise-grade Digital Forensics & Computer Integrity SaaS Platform designed for gaming communities, esports organizations, security auditors, and system administrators. It replaces legacy, intrusive PC checks with a professional workflow powered by transparent system telemetry, automated risk scoring, and AI-assisted forensic synthesis.
⚠️ Important Notice: DetectHub is NOT anti-cheat software, malware, or spyware. It operates 100% on explicit user consent and transparent, non-intrusive artifact inspection.
- Next.js 15 Web SaaS Dashboard & Forensic Inspector (
apps/web): Pure Black (#09090B) Linear/Vercel/Raycast dark theme design system, live search, notification panels, and modular page routing. - Tauri v2 + Rust Desktop Scanning Agent (
apps/agent): Modular forensic inspection engine for Windows & macOS (system.rs,process.rs,driver.rs,registry.rs,usb.rs,eventlog.rs,network.rs,defender.rs). - Public Target User Onboarding Portal (
/scan/[code]): Dedicated landing portal auto-detecting the visiting player's operating system (Windows vs macOS), displaying assigned token credentials, and providing binary downloads. - Native OS Release Packages (.dmg & .exe): Native Apple
hdiutilgenerated.dmgdisk image (DetectHub-Agent.app) for macOS and native.exedesktop installer setup package for Windows. - App Translocation & CORS Bypass Local HTTP Engine: Embedded background
http://localhost:1420runner service bypassingfile://CORS policies and macOS App Translocation isolation. - Live System Telemetry Collector (
realScanner.ts): Forensic telemetry collector querying real host OS build (macOS Sonoma / Windows 11), hardware CPU cores, memory size, hostnames, and live running processes. - Live Web SaaS Telemetry API (
/api/v1/scan/upload): Instant payload upload handler with CORS preflight support, indexing desktop agent scans directly into the Web Dashboard. - Dynamic 24-Hour Dashboard Trend Chart: Intraday scan volume and anomaly chart dynamically calculating hourly telemetry frequencies from live indexed reports.
- Forensic Report Export ("Export PDF Payload"): Printable forensic PDF payload export functionality on the single report detail inspector (
/reports/[id]). - Automated Risk Engine & DetectAI Analyst: 0-100 risk scoring algorithm evaluating unsigned drivers (+40), memory injection (+80), Defender suspension (+50), and VM hypervisors (+35) with natural language summaries.
- Production PostgreSQL / Supabase DB Persistence: Prisma ORM connection for persistent database storage via
DATABASE_URL. - Dynamic API Server URL Configuration: Production environment variable management (
NEXT_PUBLIC_API_URL) and Desktop Agent dynamic backend server URL resolution. - Production Cloud Release Hosting: Release binary distribution (.dmg & .exe) hosted via Cloudflare R2 / AWS S3 or GitHub Releases.
- Live Database Binding for Secondary Pages: Live database bindings for Organizations (
/organizations) and Computers (/computers) modules. - Apple Developer ID & Microsoft Code Signing Certification: Code Signing digital certificate deployment to bypass macOS Gatekeeper and Windows SmartScreen prompts in production.
graph TD
subgraph Desktop Agent - Tauri v2 + Rust
A[React 19 UI Frontend] <-->|Tauri IPC Commands| B[Tauri Core Engine]
B --> C[Modular Scanner Pipeline]
C --> C1[System & Specs Scanner]
C --> C2[Process & Signature Scanner]
C --> C3[Kernel Driver Scanner]
C --> C4[Registry & Autoruns Scanner]
C --> C5[USB History Scanner]
C --> C6[Network & DNS Cache Scanner]
C --> C7[Defender & Security Event Logs]
D[Encryption & Packaging] -->|AES-256 GCM Payload| E[Web SaaS Backend API]
end
subgraph Web SaaS Platform - Next.js 15
E --> F[API Router / REST Controllers]
F --> G[Configurable Risk Engine]
F --> H[DetectAI Forensic Analyst]
F --> I[Prisma DB Store]
J[Web Dashboard UI] <--> F
end
- Tech Stack: Tauri v2, Rust 2021, React 19, TypeScript, Tailwind CSS, shadcn/ui.
- Features:
- One-time scan token & invite pairing (
DETECT-8921-X992). - Animated radial progress ring indicator.
- Live streaming terminal log viewer.
- AES-256 encrypted payload packaging & automated background upload queue.
- One-time scan token & invite pairing (
- Tech Stack: Next.js 15 (App Router), React 19, TypeScript, Tailwind CSS, shadcn/ui, Framer Motion, Prisma, Recharts.
- Design System: Linear/Vercel/Raycast pure dark mode aesthetic (
#09090B), status-only accents (#22C55ESafe,#EAB308Review,#EF4444Critical,#3B82F6Info), keyboard command palette (Cmd+K). - Features:
- Forensic Dashboard (
/dashboard): Scan volume KPIs, live security event stream, dynamic intraday trend graphs. - Single Report Inspector (
/reports/[id]): Risk Score Gauge, DetectAI Analyst Q&A, Interactive Chronology Timeline, 25+ Category Artifact Explorer with raw JSON modal. - Configurable Risk Engine (
/rules): Admin weight editor for custom detection rules. - Scan Requests (
/scans): One-time invite tokens, permanent URLs, QR code access credentials. - Multi-Tenant Organizations (
/organizations): RBAC roles, brand accents, Discord webhook integration.
- Forensic Dashboard (
- Node.js 20+
- npm 10+
- Rust & Cargo (Optional for native Tauri desktop packaging)
git clone https://github.com/TheDarkGuardian/DetectHub.git
cd DetectHub
npm installcd apps/web
npm run devOpen http://localhost:3000 in your browser to access the Web Dashboard.
cd apps/agent
npm run devOpen http://localhost:1420 to inspect the Desktop Agent interface.
This project is licensed under the MIT License - see the LICENSE file for details.
Crafted with precision for next-generation digital forensics.