Active Incident? 24/7 Response →
SleuthX

AI Agent · Personal Cybersecurity

SleuthX
The forensic layer credit-monitoring services can’t reach.

The personal cybersecurity stack built around what monitoring services miss: an AI forensic agent that investigates accounts and devices end-to-end, with a credentialed examiner signing off on findings that need to stand up in court, police filings, or insurance claims. Plain-language for non-technical users — describe what's happening and the agent walks you through. Investigator-grade depth on demand. Identity monitoring, dark-web surveillance, restoration concierge, and identity-theft coverage layer in as the suite ships.

How SleuthX Works

Input. Agent. Output.

SleuthX ingests data from your accounts and devices, analyzes it with an AI agent built on a working forensics methodology, and escalates to senior human examiners when the case demands it.

Input

Ingest data from accounts and devices

  • Account logs (email, cloud, banking, social)
  • Device artifacts and screenshots
  • Phone, computer, and forensic captures
Agent

Analyze with the AI agent

  • Classify what's a real compromise vs benign
  • Reconstruct the timeline of activity
  • Surface the root cause hypothesis
Output

Deliver a structured report

  • Compromise classification + severity
  • Clear next steps you can act on
  • Court-admissible report when needed

When a case needs human judgment, SleuthX escalates to the practitioner team — Quinn, Alex, Jose — who oversee every output before it leaves the system.

Deliverables

What you get

Every SleuthX engagement produces the same five deliverables. No mystery, no scope creep.

  • Compromise classification

    Real vs benign, with severity. Tells you whether something actually happened or whether the alarm was noise.

  • Timeline of activity

    What happened, in what order, on which device or account. Reconstructed from logs, artifacts, and forensic captures.

  • Root cause hypothesis

    How the compromise started — phishing, SIM swap, reused password, OAuth grant, malicious app, or insider access. Evidence-backed.

  • Clear next steps

    What to do this hour, this week, and this quarter. Specific to your situation, not a generic checklist.

  • Structured report (legal-ready optional)

    Written for non-technical decision-makers. Court-admissible chain of custody when you need it for litigation, insurance, or law enforcement.

What SleuthX does

SleuthX brings enterprise and legal-grade methodology direct to consumers. Same court-admissible work the enterprise and law firms get from senior IR firms,Belkasoft, and Cellebrite-licensed shops. Quality, not budget. We are not competing with NordVPN, LifeLock, or basic antivirus tools. We are bringing enterprise-grade digital forensics into a tier consumers can actually pay for.

Coverage spans stalkerware detection on iPhone and Android, hacked-account forensic audit and recovery, romance scam attribution and documentation, identity theft forensic investigation, deleted-text recovery for divorce, OSINT exposure mapping, and domestic-violence digital forensics under a safety plan. Each engagement is structured to be evidentiary, not just felt.

Who builds SleuthX

Quinnlan Varcoe, Founder and CEO, sets the methodology, reviews edge cases, and is the named expert witness for litigation where the agent's output is challenged. Alex Riffenburgh, Co-Founder and CTO, owns the engineering and the offensive-security work that pressure-tests the agent before it ships findings. The agent itself absorbs the procedural analysis that previously required senior-analyst hours; the cases run through it serve as both production output and training data.

Three engagement modes

Pick the mode that matches what you need. The agent is the throughline across all three — what changes is how often it runs and how much practitioner time comes with it.

  1. Subscription — four tiers, one week free on each. SleuthX Triage at $100/mo (agent ready to respond when something happens). SleuthX Watch at $200/mo (continuous monitoring + active threat protection). SleuthX Investigate at $300/mo (forensic + OSINT depth + 2 hours practitioner time monthly). SleuthX Enterprise at $500/mo (the power-user suite for advanced consumers and DFIR practitioners — multi-seat access, deeper integrations, 4 hours practitioner consultation monthly). Tiers stack; each one includes everything from the tiers below it.
  2. Project-based forensics — six-rung ladder, $995 to $50,000+.Triage Assessment ($995 flat), Single-Device Forensics ($2,500 to $4,500), Multi-Device Divorce / Family ($5,000 to $15,000), Active Harassment / Stalkerware ($5,000 to $10,000), Complex Multi-Actor ($15,000 to $50,000), Expert Witness ($5,000 retainer + $400/hour). Scoped in writing before any retainer is collected.
  3. Hourly — $400 per hour, every service. The same standardized rate for personal forensics, divorce work, hacked-account recovery, OSINT, breach-counsel support, and every bracket of expert-witness work (case review, deposition prep, deposition, trial testimony). 4-hour-per-session minimum without a retainer.

Why these prices

Premium positioning is deliberate. The pricing funds the senior-practitioner time required to keep methodology current with the threat landscape and is comparable to enterprise retainer pricing per device covered. The methodology is the same one the enterprise gets from senior IR firms for $50,000 to $500,000 minimums. If you only need a one-time look at a specific incident, the project ladder starts at $995. If you need continuous coverage, the subscription tiers start at $100/mo. If you need open-ended senior time, hourly is $400 across the board.

What we will not do

How it works

  1. Confidential consultation. NDA-protected. 30 to 60 minutes. Direct conversation with Quinn. No sales process.
  2. Scoped engagement. Written proposal with defined deliverables, pricing, and timeline. Triage, subscription, or forensic case engagement depending on what fits.
  3. Investigation, review, and findings. The agent runs the procedural forensic work. Quinn reviews every output. You receive a written report you can act on, structured for police, court, counsel, or your own decision-making.

What separates SleuthX from antivirus and identity-protection apps

Antivirus scans for known malware signatures. Identity-protection monitors public breach databases. Neither one investigates a specific incident on your devices or accounts. Neither one produces a court-admissible report. Neither one is reviewed by a certified forensic practitioner. SleuthX is forensic methodology, not signature matching. The comp set is enterprise IR firms and Cellebrite-licensed shops, not NordVPN or LifeLock.

Why enterprise and legal-grade methodology matters

Enterprise IR firms and Cellebrite-licensed shops charge $50,000 to $500,000 for enterprise incident response and $5,000 to $15,000 per consumer case. That quality of work was previously out of reach for individuals. SleuthX keeps the methodological rigor and brings it inside a tier a consumer can actually pay for, because the agent absorbs the procedural analyst time. Quinn still owns case judgment.

How SleuthX handles each of the consumer practices

Why this work matters

Targeting personal cybersecurity stack. Quinn holds 15 active certifications across GIAC, AWS, Splunk, CompTIA. Methodology trusted by Fortune 50 enterprises, defense contractors, and the attorneys who refer to us. The agent extends that methodology to people who could not previously afford it.

Meet Your Practitioner

Quinnlan Varcoe

Founder & CEO

With operational experience across Fortune 50 security programs and the defense industrial base, Quinnlan founded SleuthX in 2022 to provide clients with the caliber of expertise typically reserved for the largest enterprises. Her work in threat intelligence and digital forensics has earned the trust of 26,000+ cybersecurity professionals who follow her analysis.

“26,000 professionals follow my work because I say what others won't — and I can back it up technically.”

Fortune 50 BackgroundDefense IndustryThreat IntelligenceDigital PrivacyIncident Response
Quinnlan Varcoe, Founder & CEO

Meet Your Lead

One direct line to Quinnlan Varcoe. A senior engineering team executes alongside her.

Quinnlan Varcoe headshotQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe headshotQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portrait

How We Work

A confidential, structured engagement.

01

Confidential Consultation

A direct conversation with Quinn, the founder and CEO who oversees every engagement. NDA-protected. No sales process.

02

Scoped Engagement

A clear written proposal with defined deliverables, timeline, and pricing. No hidden costs.

03

Investigation and Findings

Forensic work conducted to court-admissible standards, with regular communication and a written summary you can act on.

Certified Expertise

GIAC · AWS · Splunk · CompTIA

Frequently asked about SleuthX

Quinnlan Varcoe, Founder & CEO

Schedule Your Session

Schedule a confidential consultation

A direct conversation with Quinn, the founder and CEO who oversees every engagement. NDA-protected. No sales process. Most engagements begin within 48 hours.

Trusted by partners across the practice

DAS Health
Exhibit A Cyber
Ally Security
KIRO Group
Black Mirage
Kalles Group
Gridware
CQR
Archstone Security
Cyvergence
Sentinel Cyber
Cloud Underground
Seron Security
Hexen
Koru Risk Management
DAS Health
Exhibit A Cyber
Ally Security
KIRO Group
Black Mirage
Kalles Group
Gridware
CQR
Archstone Security
Cyvergence
Sentinel Cyber
Cloud Underground
Seron Security
Hexen
Koru Risk Management