Features built for causal network observability

MANTIS turns browser request traffic into a structured view of what fired, why it fired, who is behind it, and where privacy audit risk may need review.

Capture the browser session as it happens

Live network request capture, request details, headers, payload context, and a basic timeline give analysts a working view of page behavior without relying on flat screenshots.

Network request capture

Observe browser requests during page load and user interaction.

Request details

Inspect request metadata, domain context, headers, and classification evidence.

MANTIS request detail sidebar showing Facebook fbevents.js with consent-aware status, browser privacy signals, and privacy risk indicators
Request detail — consent context, risk signals, and headers in one panel (actual screenshot)

Reconstruct the initiator chain

MANTIS maps browser activity as a causal request flow, connecting requests back to scripts, initiators, tag behavior, and available stack traces.

Causal initiator tracking

Trace requests to the browser action, script, or prior request that initiated them.

Tree visualization

Read request behavior as a structured tree instead of a flat chronological log.

Stack traces

Use available stack trace context to support deeper technical investigation.

MANTIS upstream view showing Google as the root vendor spawning Google Tag Manager, which triggers GTM containers, G4, and DoubleClick chains
Upstream view — trace the full initiator chain (actual screenshot)
MANTIS vendor tree showing 15 third-party vendors branching from the page root, color-coded by trust level
Vendor tree — all third parties, clustered and ranked (actual screenshot)

Classify vendors, products, and risk context

Structured enrichment helps analysts move from raw domains to vendor intelligence, product classification, legal category signals, and risk review cues.

Vendor and product identification

Map requests to known vendors and products where classification is available.

Legal category and risk classification

Surface privacy-relevant categories that support review, not legal certification.

Unknown pattern enrichment

Use scrubbed request signatures to classify unknown or ambiguous patterns.

Separate pre-consent activity from later behavior

Timeline and consent signal analysis help reviewers compare what happened before consent, after consent, and after specific interactions.

Timeline

Place request activity in sequence for page loads and interaction-driven events.

Consent signal detection

Inspect browser and CMP-related consent state where signals can be observed.

Pre-consent activity detection

Identify requests that may require closer review because they fired before consent.

MANTIS timeline showing network density bars, lifecycle markers, and consent events across a 30-second page session
Timeline — network density, lifecycle events, consent signals, and interactions in sequence (actual screenshot)
Consent signal snapshot panel showing signal:null, OneTrust framework detected, Google and Microsoft consent null
Consent signal snapshot (actual screenshot)
GTM event panel showing gtm.timer event at 32545ms with trigger and interval data
GTM event detail (actual screenshot)

Move from review to documented evidence

The Practitioner roadmap focuses on turning observations into audit files with statuses, notes, overrides, exports, and report-ready findings.

Saved audit projects

Organize reviewed page loads, proof of record, rationale, and analyst notes.

Planned

Exports and reporting

Export CSV, JSON, DOCX, findings, and remediation recommendations as the workflow matures.

Planned

Governance workflows

Standardize team review with workspaces, approval workflow, audit trail, and templates.

On the roadmap