No public download under the ProofShot name
The engine ships as HyperSnatch v1.6.18 under the original brand while identity migration continues. No artifact is served under the ProofShot name until the rebrand completes across packaging and code.
ProofShot · In proof
Local-first Windows proof workstation: capture what matters online, keep a proof bundle with SHA-256 receipts and a Proof Passport, and verify it later without trusting the tool or the internet. Rebrand in progress — the engine currently ships as HyperSnatch v1.6.18 under its legacy name.
The job is one sentence: something online matters, and you want it captured with proof. Paste a URL or a page into the Workbench and SmartDecode reads what the target actually contains — offline.
SmartDecode (v2.5.0, built into this release) works on the page's own text. It reads the structure the page declares for itself — scripts, stylesheets, images, links, embedded declarations — and separates what is real from what is not.
Capture is structural, not photographic. This build reads and records the page's own resources and receipts; there is no pixel-screenshot engine in it. What you see below is a real SmartDecode run — two candidates identified, best target selected.
Scripts, stylesheets, images, links, and encoded declarations — the page's own references.
Incomplete or non-extractable references are refused, listed separately, never mixed into results.
The extraction pipeline runs locally, with no account and no network dependency.
Decode produces candidates, ranks them, and says which one is the best target and why. Then it hands you a plan — it never acts on your behalf.
Every candidate gets a confidence score and a place in a deterministic ranking. The best target is selected the same way every time, and the extraction table shows the source and the score. A retrieval plan is generated from the result — a command the operator can run, change, or ignore.
Scores come from the extraction pipeline itself and sort deterministically.
One candidate is chosen as the best — the one the plan is built around.
The generated plan is a starting point for the operator, never an autonomous action.
Everything captured for one matter stays together, locally, in a simple project container.
A case is a workspace folder with a name and an ID — created in one click from the Cases panel. Items added to it keep their timestamps, and the case list shows the count at a glance. It is deliberately simple: a container for evidence and its receipts, not a team collaboration system.
Create a named case from the Cases panel; it appears with its own ID.
Every item and case carries the machine's own time when it was recorded.
No team workspaces, no shared projects — a container, on purpose, per the product freeze.
One export writes the whole matter to a folder you choose: the captured page, its artifacts, and the proof files that let anyone check it later.
The proof bundle is the product. Its layout is fixed and documented, and every file in it is covered by a SHA-256 manifest. A Proof Passport states what the bundle is, when it was exported, and why — and the bundle carries its own offline verifier so someone with zero software can check it.
The whole point of the bundle is that it outlives the tool that made it.
Proof is checked against the files, not against this product. Prove It Again re-verifies an exported bundle directly from disk, and the offline verifier shipped inside the bundle does the same job on any machine with a browser. The Tamper Trial proves the system sees changes: it runs four temp copies of the bundle — a modified artifact, a missing hashed file, an altered passport, and a deleted verifier — and each tamper is caught.
Words matter, and the cheapest way to trust a proof tool is to be exact about its limits:
The public identity has moved; the packaging has not. This section says exactly where each name stands.
The production brand pack shipped the aperture mark, wordmark, and hero artwork you see on this page. But a rename is not a name change until it reaches the files people run — so the v1.6.18 application still presents itself as HyperSnatch inside its own UI, and the bundle it exports still says so. That is deliberate: UI strings are batch-renamed in a controlled rebrand release, not patched one by one.
One honesty note about branding collateral: the example hashes and timestamps inside the brand pack's asset manifest are illustrative placeholders from the designer handoff — they are artwork metadata, not verification evidence for this product. The hashes that matter are the ones inside a proof bundle.
Current status of the internal build. The public release under the ProofShot name is not out yet — this is the present state, not a promise.
The underlying engine (HyperSnatch v1.6.18) is public under its legacy name, with a 99/99 E2E test suite, SHA-256 checksums, and release receipts. The ProofShot rebrand has not yet propagated through packaging and code, so no release or download is claimed under the ProofShot name. ProofForge is a separate project and is not this product.
Honest about what is not ready.
The engine ships as HyperSnatch v1.6.18 under the original brand while identity migration continues. No artifact is served under the ProofShot name until the rebrand completes across packaging and code.
The v1.6.18 app title, shell, and strings still read HyperSnatch. Batch rename is held for a controlled rebrand release — this page is the public-facing side of that migration, done first on purpose.
SmartDecode reads and records the page's own resources and structure. There is no pixel-screenshot capture engine in this build, and no engine will be added while the product freeze is active.
No new extraction engines, intelligence features, or automation lanes while the freeze stands. Cases stay simple project containers, and proof means hashes, receipts, and tamper-evidence — nothing more.