SignalLabby ASL Network Sentinel RF Suite
Lab authorization

Authorized RF test bench

Prepare controlled RF tests.
Keep transmission inside the lab.

SignalLab is the separate active-test companion to BandSight. This public PWA creates an authorization manifest, checks supported bench hardware, and documents safety interlocks. It does not transmit, replay captured signals, jam, deauthenticate, unlock, or open anything.

Hard boundary: SignalLab is for isolated fixtures and written client-authorized lab work. It will not provide a workflow for opening garages, gates, or vehicles; cloning or replaying fobs/remotes; Wi-Fi deauthentication; jamming; credential capture; or transmitting arbitrary captured IQ recordings.

Platform hardware

Bench transceiver, not a universal key.

The recommended active hardware is a genuine HackRF One used with RF containment. Wi-Fi security checks use a separate dedicated lab access point and client because a wideband SDR is not a substitute for a normal 802.11 test interface.

Recommended transceiver

Great Scott Gadgets HackRF One

Half-duplex SDR for controlled transmit-or-receive research. SignalLab only performs a WebUSB identity check in this release; it does not claim the interface or send samples.

RF
HackRF OneSupported preflight USB ID: 1D50:6089
50Ω
Dummy load + fixed attenuationDefault transmit path; no antenna during initial validation.
BOX
RF shield enclosureRequired for garage, gate, vehicle-keyless, and sub-GHz controller fixtures.
AP
Dedicated Wi-Fi lab AP + clientFor WPA/WPS/PMF configuration checks without deauthentication or interference.
Official hardware page

WebUSB has not been checked.

Bridge phase requirements

Transmission stays behind interlocks

  • Signed engagement manifest with owner, scope, fixtures, expiration, and permitted test modes.
  • Hardware interlock proving a dummy load, cabled attenuator, or shield enclosure is present.
  • Frequency and output-power allowlists; no arbitrary waveform or captured-IQ upload.
  • Per-session audit log and automatic expiration.
  • Desktop or Raspberry Pi bridge; the public phone PWA never exposes a transmit button.

Permitted test families

Safe, fixture-based validation

  • Known benign test carrier into a dummy load or cabled attenuator.
  • Receiver sensitivity, filter response, and frequency-offset measurement.
  • Garage/gate controller resilience review using spare controller fixtures and manufacturer logs.
  • Vehicle keyless design review using an OEM bench harness with no live vehicle actuation.
  • Wi-Fi WPA mode, WPS state, PMF support, channel use, and rogue-AP visibility on a dedicated lab network.

Permanently blocked

No bypass, replay, or interference

  • Replaying captured garage, gate, alarm, or vehicle signals.
  • Attempting to unlock, start, open, or actuate a real target.
  • Rolling-code prediction, key extraction, relay attacks, or immobilizer bypass.
  • Wi-Fi deauthentication, jamming, evil-twin credential capture, or forced roaming.
  • Transmitting arbitrary captured IQ, private communications, or unknown payloads.

Authorization manifest

Create a lab session.

The PWA stores manifests locally. A future signed bridge will accept only unexpired manifests whose fixture, mode, frequency, power, and containment rules match the connected hardware.

Local output

Review before export

No manifest generated.

No manifest is uploaded automatically. Hardware transmission remains disabled in this public release.