Acorn application guide
Data Explorer
A small, explicit query can answer a question that is easy to lose in a large database. Data Explorer's demonstrated read-only SQLite view lets the examiner inspect tables and stored values while keeping query choices and timestamp interpretation open to review.
Demonstrated on public training data
Can a read-only query clarify the records behind this application database?
Start with
- A public Chrome History SQLite database; separate examples demonstrate supported structured-data views.
What you can take away
- Read-only SQLite table/query views and timestamp interpretation.
View full screenOpen the screenshot and choose “View actual size” to read the records at their original resolution.
A practical starting point
How the workflow fits together.
Open a working copy through the read-only route and identify the source database and relevant tables.
Use a query that expresses the examination question. Retain the query and compare raw values with any displayed timestamp interpretation.
Check a material result against the underlying rows or a separate read-only SQLite method. Explain how filtering or grouping affects what the result does and does not show.
Evaluate the workflow
Questions worth bringing to a demonstration.
- Can the query and source database be retained so another examiner can repeat the selection?
- Are stored values distinguishable from decoded timestamps or grouped summaries?
- Does a separate read-only check return the same material rows for the same question?
Useful next steps
Start with your requirements
Bring a sample question.
Ask us to demonstrate this workflow with suitable public or constructed material. Do not send confidential evidence in an initial enquiry.
Planned for Q1 2027
Be first to hear. Save 10% at launch.
Request Acorn launch news and details of the planned 10% offer. No deposit or purchase commitment.
Launch-update requests go to the SQFR team for review. Final offer terms and product availability are still to be confirmed.
About the screenshots and illustrations
Application screens are selected from the September 2026 Acorn screenshot pack. Captions distinguish native setup views, constructed training records and public-corpus results. They are not private client cases, and a displayed control does not establish that every operation was completed.
Relevant public sources include DeepBlueCLI training event logs and Plaso test data. Check the relevant source terms before redistributing an underlying dataset.
Workspace scenes and sector mascot variants are generated illustrations. They do not show actual police, judicial, military or university deployments or endorsements. The original Squirrel Forensics identity is retained.
