offensive-osint

Map an organization's digital footprint through structured OSINT modules.

Updated Aug 23, 2026
One-click install
npx skills add https://github.com/RideMatch1/a.e.g.i.s --skill offensive-osint-ridematch1
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: offensive-osint
Source: https://github.com/RideMatch1/a.e.g.i.s/tree/main/packages/skills/skills/offensive/snailsploit-fork/osint
Command: npx skills add https://github.com/RideMatch1/a.e.g.i.s --skill offensive-osint-ridematch1

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

OSINT tasks for offensive security are time-consuming and error-prone without a structured methodology. This skill provides a comprehensive, repeatable framework to map a target's digital footprint and identify exposure across domains, individuals, infrastructure, and data leaks.

Core Features & Use Cases

  • Domain reconnaissance and infrastructure mapping
  • Social media profiling and identity linkage
  • GitHub/code leaks and public exposure monitoring
  • Breach data lookup and credential exposure checks
  • Cryptocurrency tracing and geospatial intelligence
  • AI-assisted analysis workflows to synthesize findings
  • Archive findings and generate structured reports for incident response or bug bounty scopes

Quick Start

Provide a target domain or entity to begin the OSINT workflow and collect artifacts across categories into a structured report.

Frequently Asked Questions about offensive-osint

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform OSINT reconnaissance on a target organization's digital footprint?

OSINT reconnaissance maps an organization's digital footprint by applying a structured workflow across domain recon, social profiles, code leaks, and infrastructure exposure to identify external vulnerabilities and collect archived evidence.

What's the best way to find leaked credentials and code exposures for a specific domain?

Finding leaked credentials involves querying breach data and monitoring code leaks to check credential exposure, enabling structured collection of public data artifacts tied to the target domain.

Can I trace cryptocurrency trails and map infrastructure exposure during a security assessment?

Cryptocurrency tracing and infrastructure mapping are supported as category-driven modules, allowing you to follow transaction trails and identify exposed infrastructure for comprehensive offensive security reconnaissance.

How do I structure and archive OSINT findings for bug bounty reports?

Archiving findings generates structured reports by synthesizing collected artifacts across domain, email, social, and leak categories into a repeatable format suitable for incident response or bug bounty scopes.

Does this OSINT workflow require external reconnaissance tools or dependencies to function?

This OSINT workflow operates without external dependencies, providing a self-contained methodology to map digital footprints and link identities across social media, code repositories, and breach data.

When should I use a structured OSINT playbook instead of ad hoc reconnaissance techniques?

A structured OSINT playbook is needed when ad hoc reconnaissance becomes time-consuming and error-prone, ensuring repeatable evidence collection for complex targets spanning individuals, domains, and infrastructure.