Data Recovery Case File · Trust, Practice & Honest Limits · The Footage the Idle Engine Ate
An overwritten dashcam card examined without fear or favour: the honest arithmetic of a small loop, the fragments checked properly — and the timeline the card kept even where the pictures didn't
His account was careful and his question was brave. He'd bought a car and had a dashcam fitted; after problems, the car went back to the dealership for repairs. A disagreement followed about how the vehicle had been used — and, in his words, the dashcam "had recorded footage that suggested otherwise." Then the part that brought him here: while the car was with the dealership, "they then left the car running, which caused the dashcam to continue recording and overwrite the existing footage on the card." Whether that happened by oversight or otherwise is not this page's question, and this laboratory doesn't adjudicate disputes — that is said plainly at the top because it shapes everything below. What a bench can do is exact and documented: read the card completely, state precisely what survives and what does not, and record what the card's own structures testify about when things were recorded and re-recorded. His closing line — "Would you be able to help please? Or is it not possible to do this?" — earned the same honest treatment this archive gave a surveillance loop before it: the truth first, the assessment to verify it, and no promise that physics won't honour.
| Media | Dashcam SD card — continuous-loop vehicle recording; earlier footage overwritten during a period the vehicle sat, engine running, at a dealership |
| Reported situation | Original footage believed relevant to a usage dispute · loop continued recording while the car idled elsewhere · owner seeking the earlier recordings · cost and timescale asked directly, possibility asked honestly |
| Fault class | No fault — circular recording operating as designed; the target footage beyond or at the edge of the loop's horizon |
| Equipment used | DeepSpar USB Stabilizer 10Gb (hardware write-block, inline instability handling) · full card image · OSForensics file-table chronology, signature analysis and verified export |
The decode: the small loop's arithmetic, the edges worth checking, and the card as witness to time
The overwrite, stated without softening: dashcams record in a circle on small cards, and hours of idle running can consume days of history — the newest minutes re-recorded directly over the oldest, which then cease to exist as recoverable pictures. That is the same physics this archive set out for a CCTV loop in an earlier volume, and it doesn't bend for stakes or sympathy: genuinely overwritten footage cannot be brought back by any laboratory, and a firm promising otherwise in a dispute deserves double the usual suspicion. His bracing for "no" was well-founded, and he is owed that sentence before any other.
The edges, checked rather than assumed: loops are untidy, and an honest assessment walks every untidy edge. Dashcam filesystems delete-then-write, so fragments of not-yet-reclaimed earlier clips can survive in free space between the loop's bites; protected event clips — the recordings a dashcam locks when its sensors trip — often live outside the loop entirely and survive it; and the boundary files at the loop's oldest edge are sometimes half-overwritten, their surviving halves playable. None of these doors is wide. All of them were opened, from a write-blocked image, and the findings itemised clip by clip.
The witness that survives the pictures: here is the part of his case that overwriting could not touch. A card's file table records what its footage cannot show once replaced: the timestamps of the recordings now occupying the card — when the loop was writing, in what continuous spans, over what period. Where earlier content is gone, the card still documents that recording occurred during specific hours, and the written report set that chronology out plainly, sourced to the card's own structures. What weight any of that carries in his disagreement is for others to say; this bench's part ends at exact, documented reading — which is precisely what he received.
The assessment: read completely, reported completely
The card was imaged write-blocked and examined in full: the surviving loop exported playable; the free-space fragments and boundary clips recovered where their structure allowed; the protected-clip areas checked; and the file-table timeline extracted and set down. The earlier footage he most wanted was confirmed, honestly, to lie substantially beyond what survived — with the recovered fragments and the documented chronology delivered as what the card could still truthfully give.
On the bench
The card was imaged behind a DeepSpar USB Stabilizer 10Gb — a hardware write-blocker sitting between card and workstation, guaranteeing that not one byte of the disputed evidence could change during examination. The chronology itself was assembled in OSForensics: the filesystem's own allocation tables and directory entries read as a timeline, each surviving and overwritten clip placed in write order, with signature analysis confirming which regions held valid footage and which had been reclaimed. The neutral report was, in the end, a file-table exhibit — dates, sequence, and allocation, presented without a thumb on either side of the scale.
The outcome
An exact written account instead of a comfortable promise: what survived (delivered playable), what was gone (named as gone, with the physics stated), and what the card's structures recorded about when the overwriting happened. Under no-recovery-no-fee, the verification of hard truths costs nothing — the same protection this archive has always pointed at cases where the honest answer might be "no." His two practical questions were answered in writing at assessment: one fixed figure including VAT for the recovery work performed, and the timescale beside it.
Footage on a loop matters — and the device is out of your hands
The moment recorded footage becomes important, get the card out and write-locked, or the device powered off — a running loop eats its own history at a rate small cards make brutal. If the device must go somewhere with the card aboard, export the clips first and note the date you did. And if an overwrite has already happened, ask for what a bench can honestly provide: recovered fragments where they exist, protected clips where the device kept them, and a documented timeline from the card's own records — the exact reading, not the impossible one.
Get an exact, documented reading — call Edinburgh Data Recovery on 0131 202 0491; honest findings in writing, one fixed figure; on cards and sticks where content has been deleted or overwritten, the figure is payable upfront.
Request a quote online →
Our case files are drawn from genuine enquiries received by our laboratory over the past ten years, anonymised to protect client confidentiality. Each one describes the diagnostic and recovery procedure our engineers apply to that fault, using the equipment listed.