GraphDagger docs
Install GraphDagger, learn the core concepts, and explore every tool in the platform.
Concepts
Learn how GraphDagger is put together, from the licence that starts it to Spotlight, Settings, notifications, and charts.
Set up GraphDaggerFind out what you must have before you start work: a supported system, a licence key, and an internet connection.SpotlightOpen the command bar, learn the three parts of the panel, and move through it with the keyboard.SettingsOpen Settings from the gear icon and see which of its three tabs holds the control you want.NotificationsSee the two places a message shows, and how its severity sets the colour, the icon, and how long it stays.ChartsLearn how every results table in the app turns the rows you select into a chart, and what opens when it does.
Features
Every tool in the platform, grouped by module.
Traffic
Packet CaptureSee how the packet list, detail pane, toolbar, and settings menu fit together in one capture workspace.Web DebuggerWeb Debugger intercepts HTTP, HTTPS, and WebSocket traffic, and this page shows how the two panes and the sub-tabs above them fit together.API ClientOpen the workspace, then work in tabs that hold requests, flows, and a mock server.Playwright InspectorOpen a recorded browser session and step through the page, the actions, the console output, and the network calls on one clock.
Analyse
Email ForensicsLoad a message from a file or from pasted headers, then work through the four tabs that take it apart.File TriageLearn how the queue, the centre tabs, and the report panel work together on one file, and which analysers run the moment you open it.Log ExplorerOpen one or more log files, then read the query bar, histogram, facets panel, and events table that all answer to the same query.Audio InspectorA recording is drawn as a waveform and a spectrogram at once, and every action in the workspace points at a time range you choose.
Workbench
Data TransformDraw a reusable pipeline on a canvas instead of piping a sample through separate tools, and find the catalogue, inspector, and execution log around it.Auth InspectorAuth Inspector turns a JWT, SAML response, OAuth URL, certificate, or Kerberos ticket back into something you can read, across four modes that each keep their own state.Network ReconReconnaissance reads the public record on a domain, the Port Scanner finds what is listening on a network, and Crawl & API Scan works over a web application.Database ClientMeet the four engines Database Client speaks to, and learn which panel of the workspace holds what.Remote TerminalOpen the feature, start a local shell, and see how the sidebar, toolbar, and panes fit together.Geo MapSee what the map does with a file of features, and how the five regions of the workspace fit together.