Every cyber case. One network.
CDR calls, UPI transfers, tower pings, devices, CCTV and FIRs — connect all of them into one evidence-grounded network you can explore, query, and cite.
Partner Cyber Cells
Connected across every cyber cell






























Intelligence Feed
Live signals from the field
Live signals · Cybercrime · Network intelligence · Financial activity
Capabilities
What can you do with preksha?
Four core movements, one pipeline — from raw evidence to a cited, analytical lead.
What is preksha
One system. Every source the case produces.
Law enforcement work spans FIR narratives, call records, money trails, tower presence and CCTV sightings — separate formats, different languages, often by hand. preksha ingests all of it, resolves the people and devices behind each record, and assembles a single case-scoped network that investigators can explore, query, and cite.
Ingest & reveal the complete record
Upload FIRs, CDR, IPDR, financial and UPI transactions, tower dumps and CCTV metadata. Artifacts are stored immutably as legal-of-record, ingestion is asynchronous and resumable, and nothing is lost.
- Scanned, handwritten and text documents in Hindi and English.
- OCR and NER with explainable confidence, human review loop.
- Deterministic entity resolution first — reviewed, reversible merges.
Platform
From raw artifacts to analytical leads.
An event-authoritative POLE graph — Person, Object, Location, Event — case-scoped by construction, preserving every record and timestamp. Analytics are computed deterministically and labelled as indicators, never auto-verdicts.
Follow the network, not the paper trail
Every call, transfer, tower ping and CCTV sighting becomes an event in the graph. preksha aggregates them into derived relationships — who communicates with whom, whose money lands where, who was present when — while keeping each source record intact and attributable.
- Bounded, paginated exploration of dense real-world networks.
- Timeline, geospatial and financial views on the same entities.
- Cross-case correlation on the authorized intersection of cases.
Ask in plain language. Get cited answers.
“How is the money moving?”, “What happened in the 24 hours before the robbery?”, “Who appears in more than one FIR?” — each question is routed to the right engine. Deterministic questions are answered deterministically; the local model only explains retrieved, case-scoped evidence.
- Every answer carries structured citations to the exact record.
- Fabricated references are rejected before they reach you.
- No external cloud dependency — designed for on-premise operation.
Reports, evidence and audit, by design
Generate investigative working copies with source references and full provenance. Every access, merge, query and generation is recorded in a chained audit log.
- Traceable reports built for review — not inflated claims.
- Append-only audit chains with daily anchors.
- Reversible entity merges with complete provenance.
Security & Sovereignty
Sensitive data stays inside the perimeter.
Criminal-intelligence data cannot leave sovereign infrastructure. RBAC and case ACL with deny-by-default, authorization before retrieval at the data plane, on-premise model plane, prompt-injection defenses and tamper-evident artifacts.
Case-Level Access
Least privilege on every case, enforced before any retrieval.
On-Premise Model Plane
Local retrieval-then-answer; no data egress in the chain.
Air-Gap Ready
Designed to run fully offline on sovereign infrastructure.
Evidence Integrity
Immutable artifacts, chained audit, reversible merges.
See preksha in action
A first look at the platform
From raw evidence to the analytical network, right on screen.
Ready to see the whole network?
Explore the platform with the full sample dataset — upload a file, watch the graph build, run analytics, ask a question, export a report.



