Building toward a licensed private investigation agency
An AI investigator with a full digital forensics lab
SleuthX is not yet a licensed private investigation agency; licensure is in progress.Describe what happened in your own words. Our AI investigator examines your accounts and devices, builds a defensible report, and walks you through the fix, one that holds up for police, insurance, and court.
Private and confidential. We don't sell, share, or train models on your case data.
Two ways to use SleuthX
Drive it yourself, or hand it to our team.
Same forensic methodology, same defensible output, same chain of custody, whichever path fits where you are right now.
Self-serve
Drive it yourself
Best when you're hands-on, want to learn what happened, or have a tight budget. The AI investigator handles the forensic work; you steer.
- • AI investigator with the full forensic toolkit
- • Self-paced, no booking needed
- • Lifetime access, $995 once
- • Prepared to evidentiary standards; examiner review marks it court-ready
Concierge
Have us drive it
Best when you're in crisis, on a deadline, need a court-grade report tomorrow, or just want a credentialed human to take the case off your plate.
- • Credentialed examiner takes the case end-to-end
- • Device packages from $3,000 (1, 3, or 5 devices), each including the $995 license; $400/hr flat beyond
- • Same forensic output and chain of custody
- • Free 30-minute triage call to scope the case
Not sure which? In an active crisis or on a deadline, have us drive it. Want to learn what happened on a budget, start it yourself. Switch between modes any time. Start DIY, hand off if it gets complicated. Your evidence and chain of custody travel with you.
SleuthX

The AI investigator that starts with forensics. If it’s digital, it leaves a trail — and it follows it: accounts, devices, money, and the connections between them.
How SleuthX Works
Input. Agent. Output.
SleuthX ingests data from your accounts and devices, analyzes it with an AI agent built on a working forensics methodology, and escalates to senior human examiners when the case demands it.
Ingest data from accounts and devices
- Account logs (email, cloud, banking, social)
- Device artifacts and screenshots
- Phone, computer, and forensic captures
Analyze with the AI agent
- Classify what's a real compromise vs benign
- Reconstruct the timeline of activity
- Surface the root cause hypothesis
Deliver a structured report
- Compromise classification + severity
- Clear next steps you can act on
- Court-admissible report when needed
When a case needs human judgment, SleuthX escalates to the practitioner team of Quinn and Alex, who oversee every output before it leaves the system.
Deliverables
What you get
Every SleuthX engagement produces the same five deliverables. No mystery, no scope creep.
Compromise classification
Real vs benign, with severity. Tells you whether something actually happened or whether the alarm was noise.
Timeline of activity
What happened, in what order, on which device or account. Reconstructed from logs, artifacts, and forensic captures.
Root cause hypothesis
How the compromise started, whether phishing, SIM swap, reused password, OAuth grant, malicious app, or insider access. Evidence-backed.
Clear next steps
What to do this hour, this week, and this quarter. Specific to your situation, not a generic checklist.
Structured report (legal-ready optional)
Written for non-technical decision-makers. Court-admissible chain of custody when you need it for litigation, insurance, or law enforcement.
Founder with roughly a decade in incident response and threat intelligence for Fortune 50 enterprises and the defense industrial base. View all credentials.
Plain terms
What we are, and what we are not
A digital forensics practice with an AI investigator at the center. Credentialed examiners, documented chain of custody, explainable findings you can verify, and court-admissible reports under FRE 901/902. When field work is needed — backgrounds, locates, physical surveillance — we coordinate with licensed private investigators. Lawful, confidential, on your side.
Spyware, stalkerware, or a way to secretly monitor another person. We do not “hack back,” promise guaranteed money recovery, or touch any account or device without its owner's lawful authorization. We decline engagements that ask us to.
The Stack
Forensic depth at the center. Protections wrapped around it.
Most consumer cyber suites bolt monitoring on top of more monitoring.
SleuthX inverts the stack. The AI investigator and the credentialed examiner signing off on findings are the work we own. Identity monitoring, dark-web monitoring, breach response, restoration concierge, and identity-theft coverage layer in underneath.
AI investigator
Investigates accounts and devices end-to-end. Compromise classification, timeline reconstruction, attribution, and clear next steps. Plain-language intake; deep-investigator depth on demand. Every step is explainable, the agent shows its evidence, and findings are verified before they ship.
Court-ready reporting
Findings that hold up in court, police filings, and insurance claims. Signed off by a credentialed forensic examiner before they leave the practice.
Methodology engine
The DFIR playbooks the industry charges enterprises five and six figures for, encoded and run automatically. Stalkerware, account compromise, wire fraud, SIM swap, romance scam, identity theft, more.
Identity monitoring
Continuous credit-bureau-grade monitoring across all three bureaus, SIM-swap alerts, and account-takeover detection. Same data the major monitoring services use, layered into the agent.
Dark-web monitoring
Continuous scan of breach corpora, paste sites, and underground markets for your credentials, accounts, and exposed data.
Restoration concierge
Full-service identity-theft remediation team for active incidents. Disputes, filings, recovery, and direct work with creditors and law enforcement on your behalf.
Identity-theft coverage
Carrier-underwritten reimbursement coverage for losses, legal fees, and recovery costs — alongside the personal cyber insurance coordination we offer today. Coverage limits and terms set with the carrier at launch.
Building toward a licensed private investigation agency
Today SleuthX is AI digital forensics, and digital forensics is not regulated under private investigator licensure. SleuthX is not yet a licensed private investigation agency. Our founder is the principal applicant for a Florida Class C private investigator license, which is in progress, and SleuthX is building toward licensed private investigation agency status. When a matter needs licensed field investigation, we coordinate it through the licensed private investigator partner network. Every statement about licensure on this page is forward-looking; when that status changes, this language changes.
One investigator. One platform. The forensic layer is what we own; the monitoring infrastructure underneath is licensed from category-leading providers and integrated as the suite ships.
Three Practices, One Standard
The work most cybersecurity firms aren't built for.
Personal Forensics
When something feels wrong with your phone, your accounts, or someone in your life, we tell you the truth.
Litigation Support
Privileged forensic work, court-admissible documentation, expert witness testimony. Most matters begin within 48 hours.
Family Office & Advisor Services
Discreet digital risk and forensic work for principals, family offices, and the advisors who serve them.
For Individuals & Families
When something feels wrong, start with answers.
Digital Forensics for Individuals
Court-ready investigation of devices, accounts, and digital evidence.
Stalkerware & Spyware Detection
Forensic phone scan that finds Pegasus, FlexiSPY and mSpy. Consumer apps miss them.
Account Recovery
Investigation plus secure recovery for hacked email, social, banking, iCloud.
OSINT Investigation
Verify identities, trace anonymous harassers, map digital exposure.
Privacy Services
Data broker removal, encrypted communications, account hardening, ongoing monitoring.
Identity Theft Investigation
Forensic investigation of how exposure happened. Evidence for police, banks, counsel.
For Attorneys
Court-ready forensic work.
Litigation Support
Computer + mobile forensics, deleted-data recovery, expert witness. ABA-aligned engagement.
Phone Extraction for Divorce
Recover deleted texts, hidden apps and photos with court-ready chain of custody.
Cybersecurity Expert Witness
Court-recognized methodology. Available for deposition, hearing, and trial.
E-Discovery & ESI
Forensically sound collection and production. FRCP 26 and FRE 901 aligned.
Meet Your Practitioner
Quinnlan Varcoe
Founder & CEO
GIAC-certified · 9 industry certifications
With operational experience across Fortune 50 security programs and the defense industrial base, Quinnlan founded SleuthX in 2022 to provide clients with the caliber of expertise typically reserved for the largest enterprises. Her work in threat intelligence and digital forensics has earned the trust of 26,000+ cybersecurity professionals who follow her analysis.
“26,000 professionals follow my work because I say what others won't — and I can back it up technically.”
How We Work
A confidential, structured engagement.
Confidential Consultation
A direct conversation with Quinn, the founder and CEO who oversees every engagement. NDA-protected. No sales process.
Scoped Engagement
A clear written proposal with defined deliverables, timeline, and pricing. No hidden costs.
Investigation and Findings
Forensic work conducted to court-admissible standards, with regular communication and a written summary you can act on.
Trusted by Security Leaders
Client Perspectives
“SleuthX has proven to be an outstanding partner. We've trusted them to handle sensitive investigations, and they consistently deliver clear, evidence-based answers. They are a trusted extension of any security firm.”
“Quinnlan brings more than cybersecurity expertise. She brings strategic alignment. She has a strong ability to take complex situations and break them down into clear, understandable findings. She's the kind of asset who elevates your offering.”
“Her ability to navigate high-stakes incidents was invaluable. She stays focused on the evidence and avoids speculation, which is critical when someone is trying to understand whether they've actually been compromised. She's a game-changer for channel growth.”
“Working with SleuthX has been one of the most seamless collaborations. They bring a disciplined and professional approach to digital investigations. They're not just a vendor. You can trust them.”
Frequently asked about SleuthX
Is SleuthX a licensed private investigator? (No — not yet; we're building toward it.)
What does SleuthX do?
How does SleuthX compare to antivirus or identity-protection apps?
What do I receive after running SleuthX?
A structured forensic report with five deliverables:
- a classification of whether something real happened or whether the alarm was noise, with severity;
- a timeline of what happened, in what order, on which device or account;
- a root-cause hypothesis for how the compromise started (phishing, SIM swap, OAuth grant, malicious app, insider access), evidence-backed;
- clear next steps for this hour, this week, and this quarter;
- a structured report written for non-technical decision-makers but defensible in litigation, insurance, and law-enforcement contexts when needed.
What kinds of incidents does SleuthX handle?
Are the reports court-admissible?
Where does the AI agent stop and human practitioners take over?
Schedule Your Session
Get answers, not alerts.
SleuthX ships you a structured forensic report on what actually happened. It covers compromise classification, timeline, root cause and next steps. Start with the agent now, or talk to Quinn if your case is active and time-sensitive.
Free, confidential · NDA-protected · no obligation.
- 1. Book a 30-minute call — we scope your situation, no charge.
- 2. You get a written scope — deliverables, timeline, and price — before any work begins.
- 3. Approve it and we start; most engagements begin within 48 hours.
















