GUIDE

A chronology is only useful if every event can be traced back.

The strongest chronology is not simply a list of dates. It records what happened, where the information came from and where different sources disagree.

MOLE Forensic Intelligence evidence analysis artwork
EVIDENCE RUNS DEEPER
WHEN TO USE IT

The evidence problem

When the sequence of events is disputed, fragmented or spread across a large case file.

WHAT YOU CAN SEND

Typical material

Statements, orders, correspondence, reports, logs, decisions and dated records.

WHAT YOU RECEIVE

Reviewable output

A source-linked chronology with conflicts, gaps and supporting document references.

Extract dates and events

Capture explicit and inferred dates carefully and distinguish between them.

Keep source references

Every chronology entry should point back to the supporting document.

Flag conflicts

Where two records describe the same event differently, preserve both accounts for review.

METHOD

How this analysis is carried out.

01

1. Define the period and issue

Set the relevant timeframe, people and questions before extracting events.

02

2. Extract dated events

Events are captured from orders, statements, emails, reports, logs and other dated records.

03

3. Preserve provenance

Each chronology entry retains a route back to the document that supports it.

04

4. Compare competing accounts

Where sources describe the same event differently, both accounts are preserved and the difference is identified.

05

5. Review sequence and gaps

The chronology is checked for missing periods, duplicated events, timing conflicts and unsupported later summaries.

DELIVERABLES

What a professional output should contain.

OUTPUT

Evidence register

A structured record of the material actually reviewed, suitable for audit and later cross-reference.

OUTPUT

Source-linked findings

Material observations presented with enough source information to locate the supporting record.

OUTPUT

Chronology / analytical schedule

Where relevant, events, transactions, comparisons or issues arranged into a practical working schedule.

OUTPUT

Evidence gaps and limitations

A separate record of missing material, ambiguity, assumptions and points that cannot safely be concluded from the supplied evidence.

OUTPUT

Review status

Clear distinction between automated extraction, analytical review points and human-reviewed findings.

MOLE REPORT STANDARD

Precise enough to be checked.

Professional evidence work should not hide the route from observation back to source. MOLE outputs are designed around traceability, scope control and explicit limitations.

SCOPE

Question first

The report states what was asked, what material was supplied and what falls outside the review.

PROVENANCE

Source-linked

Material observations are linked to identifiable source records rather than presented as unsupported assertions.

SEPARATION

Fact, inference, limitation

Extracted facts, analytical observations, unresolved points and limitations are kept distinguishable.

QUALITY CONTROL

Review before reliance

Automated signals remain review points until checked against the underlying material.

VERSIONING

Dated and controlled

Reports can be versioned so later evidence or corrections do not silently overwrite the earlier analytical record.

BOUNDARIES

No inflated claims

Where the evidence cannot safely establish a proposition, the report should say so explicitly.

CLIENT EVIDENCE ROOM

Keep the brief, evidence, reports and billing together.

Open a secure MOLE case and track exactly what has been requested and delivered.

Open the client portal →
Scope: MOLE provides evidence analysis and investigative support. Automated intelligence points require human review. MOLE does not currently claim accredited device acquisition, deleted-data recovery or laboratory computer/mobile examination.