Active Incident? 24/7 Response →
SleuthX

AI Agent · Personal Cybersecurity

SleuthX
The forensic layer credit-monitoring services can’t reach.

The personal cybersecurity stack built around what monitoring services miss: an AI forensic agent that investigates accounts and devices end-to-end, with a credentialed examiner signing off on findings that need to stand up in court, police filings, or insurance claims. Plain-language for non-technical users — describe what's happening and the agent walks you through. Investigator-grade depth on demand. Identity monitoring, dark-web monitoring, restoration concierge, and identity-theft coverage layer in as the suite ships.

How SleuthX Works

Input. Agent. Output.

SleuthX ingests data from your accounts and devices, analyzes it with an AI agent built on a working forensics methodology, and escalates to senior human examiners when the case demands it.

Input

Ingest data from accounts and devices

  • Account logs (email, cloud, banking, social)
  • Device artifacts and screenshots
  • Phone, computer, and forensic captures
Agent

Analyze with the AI agent

  • Classify what's a real compromise vs benign
  • Reconstruct the timeline of activity
  • Surface the root cause hypothesis
Output

Deliver a structured report

  • Compromise classification + severity
  • Clear next steps you can act on
  • Court-admissible report when needed

When a case needs human judgment, SleuthX escalates to the practitioner team — Quinn, Alex, Jose — who oversee every output before it leaves the system.

Explore the platform →See what's live on the roadmap →

Deliverables

What you get

Every SleuthX engagement produces the same five deliverables. No mystery, no scope creep.

  • Compromise classification

    Real vs benign, with severity. Tells you whether something actually happened or whether the alarm was noise.

  • Timeline of activity

    What happened, in what order, on which device or account. Reconstructed from logs, artifacts, and forensic captures.

  • Root cause hypothesis

    How the compromise started — phishing, SIM swap, reused password, OAuth grant, malicious app, or insider access. Evidence-backed.

  • Clear next steps

    What to do this hour, this week, and this quarter. Specific to your situation, not a generic checklist.

  • Structured report (legal-ready optional)

    Written for non-technical decision-makers. Court-admissible chain of custody when you need it for litigation, insurance, or law enforcement.

What SleuthX does

SleuthX brings enterprise and legal-grade methodology direct to consumers. Same court-admissible work the enterprise and law firms get from senior IR firms,Belkasoft, and Cellebrite-licensed shops. Quality, not budget. We are not competing with NordVPN, LifeLock, or basic antivirus tools. We are bringing enterprise-grade digital forensics into a tier consumers can actually pay for.

Coverage spans stalkerware detection on iPhone and Android, hacked-account forensic audit and recovery, romance scam attribution and documentation, identity theft forensic investigation, deleted-text recovery for divorce, OSINT exposure mapping, and domestic-violence digital forensics under a safety plan. Each engagement is structured to be evidentiary, not just felt.

Who builds SleuthX

Quinnlan Varcoe, Founder and CEO, sets the methodology, reviews edge cases, and is the named expert witness for litigation where the agent's output is challenged. Alex Riffenburgh, Co-Founder and CTO, owns the engineering and the offensive-security work that pressure-tests the agent before it ships findings. The agent itself absorbs the procedural analysis that previously required senior-analyst hours; the cases run through it serve as both production output and training data.

Three ways to work with SleuthX

Pick the one that matches what you need. The agent is the throughline across all three — what changes is whether you run it yourself, hand it to our team, or run a whole team on it.

  1. Self-serve tool — $995 once, every tool unlocked. A personal cybersecurity service that investigates, not just alerts. The one-time purchase includes $995 of usage credit; after that, usage draws down a prepaid token balance as tools run — top up anytime, pay only for what you use. SleuthX Enterprise at $20,000/mo is the team tier: frontier reasoning, a dedicated analyst escalation channel, and team billing.
  2. Done-for-you forensics — device packages from $2,000. $2,000 for 1 device, $5,000 for 3 devices, and $7,000 for 5 devices — each including the $995 lifetime license. Scoped in writing on a free triage call before any retainer is collected.
  3. $400/hr flat — for everything else. The same standardized rate for additional devices, divorce work, hacked-account recovery, OSINT, breach-counsel support, and every bracket of expert-witness work (case review, deposition prep, deposition, trial testimony). The largest complex and litigation cases run $15,000–$50,000, scoped per case. 4-hour-per-session minimum without a retainer.

Why these prices

Premium positioning is deliberate. The pricing funds the senior-practitioner time required to keep methodology current with the threat landscape and is comparable to enterprise retainer pricing per device covered. The methodology is the same one the enterprise gets from senior IR firms for $50,000 to $500,000 minimums. If you want to run it yourself, the self-serve tool is a one-time $995 purchase. If you want us to do the work, done-for-you device packages start at $2,000. If you need open-ended senior time, hourly is $400/hr across the board.

What we will not do

How it works

  1. Confidential consultation. NDA-protected. 30 to 60 minutes. Direct conversation with Quinn. No sales process.
  2. Scoped engagement. Written proposal with defined deliverables, pricing, and timeline. Triage, subscription, or forensic case engagement depending on what fits.
  3. Investigation, review, and findings. The agent runs the procedural forensic work. Quinn reviews every output. You receive a written report you can act on, structured for police, court, counsel, or your own decision-making.

What separates SleuthX from antivirus and identity-protection apps

Antivirus scans for known malware signatures. Identity-protection monitors public breach databases. Neither one investigates a specific incident on your devices or accounts. Neither one produces a court-admissible report. Neither one is reviewed by a certified forensic practitioner. SleuthX is forensic methodology, not signature matching. The comp set is enterprise IR firms and Cellebrite-licensed shops, not NordVPN or LifeLock.

Why enterprise and legal-grade methodology matters

Enterprise IR firms and Cellebrite-licensed shops charge $50,000 to $500,000 for enterprise incident response and $5,000 to $15,000 per consumer case. That quality of work was previously out of reach for individuals. SleuthX keeps the methodological rigor and brings it inside a tier a consumer can actually pay for, because the agent absorbs the procedural analyst time. Quinn still owns case judgment.

How SleuthX handles each of the consumer practices

Why this work matters

Built for personal cybersecurity at evidentiary grade. Quinn holds 15 active certifications across GIAC, AWS, Splunk, CompTIA. Methodology trusted by Fortune 50 enterprises, defense contractors, and the attorneys who refer to us. The agent extends that methodology to people who could not previously afford it.

Meet Your Practitioner

Quinnlan Varcoe

Founder & CEO

With operational experience across Fortune 50 security programs and the defense industrial base, Quinnlan founded SleuthX in 2022 to provide clients with the caliber of expertise typically reserved for the largest enterprises. Her work in threat intelligence and digital forensics has earned the trust of 26,000+ cybersecurity professionals who follow her analysis.

“26,000 professionals follow my work because I say what others won't — and I can back it up technically.”

Fortune 50 BackgroundDefense IndustryThreat IntelligenceDigital PrivacyIncident Response
Quinnlan Varcoe, Founder & CEO

Meet Your Lead

One direct line to Quinnlan Varcoe. A senior engineering team executes alongside her.

Quinnlan Varcoe headshotQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe headshotQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portraitQuinnlan Varcoe portrait

How We Work

A confidential, structured engagement.

01

Confidential Consultation

A direct conversation with Quinn, the founder and CEO who oversees every engagement. NDA-protected. No sales process.

02

Scoped Engagement

A clear written proposal with defined deliverables, timeline, and pricing. No hidden costs.

03

Investigation and Findings

Forensic work conducted to court-admissible standards, with regular communication and a written summary you can act on.

Certified Expertise

GIAC · AWS · Splunk · CompTIA

Frequently asked about SleuthX

Quinnlan Varcoe, Founder & CEO

Schedule Your Session

Schedule a confidential consultation

A direct conversation with Quinn, the founder and CEO who oversees every engagement. NDA-protected. No sales process. Most engagements begin within 48 hours.

Transparent pricing

Trusted by partners across the practice

DAS Health
Exhibit A Cyber
Ally Security
KIRO Group
Black Mirage
Kalles Group
Gridware
CQR
Archstone Security
Cyvergence
Sentinel Cyber
Cloud Underground
Seron Security
Hexen
Koru Risk Management
DAS Health
Exhibit A Cyber
Ally Security
KIRO Group
Black Mirage
Kalles Group
Gridware
CQR
Archstone Security
Cyvergence
Sentinel Cyber
Cloud Underground
Seron Security
Hexen
Koru Risk Management