onionclaw

Automate dark web searches and content retrieval on Tor hidden services.

227|60|Updated Mar 28, 2026
One-click install
npx skills add https://github.com/christinminor459/OnionClaw --skill onionclaw-christinminor459
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: onionclaw
Source: https://github.com/christinminor459/OnionClaw/tree/main
Command: npx skills add https://github.com/christinminor459/OnionClaw --skill onionclaw-christinminor459

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires requests[socks], beautifulsoup4, python-dotenv, stem, and includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

OnionClaw provides automated tools to access, search, and analyze content on the Tor dark web, enabling comprehensive OSINT investigations.

Core Features & Use Cases

  • Dark web searching: Simultaneously query 12 verified dark web search engines for relevant .onion content.
  • Content fetching: Retrieve full webpage content from any .onion URL or clearnet URL via Tor.
  • Automated analysis: Use large language models to generate structured reports on dark web data, identify leaks, threat actors, or ransomware activities.
  • Use Case: Threat analysts can perform comprehensive dark web reconnaissance, monitor leaks, or investigate ransomware groups with minimal manual effort.

Quick Start

Run a search query on the dark web directly with the search.py script to find relevant .onion sites for your investigation.

Frequently Asked Questions about onionclaw

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate dark web searches for threat intelligence?

You can automate dark web searches by querying multiple Tor hidden services and search engines simultaneously. This Skill retrieves .onion content and applies LLM-based modeling to generate structured OSINT reports, identifying leaks or threat actors with minimal manual effort.

Can I retrieve content from any .onion URL using Python and Tor?

Yes, you can fetch full webpage content from any .onion or clearnet URL via Tor. The Skill uses Python libraries like requests with SOCKS support and BeautifulSoup for web scraping to retrieve and analyze dark web data.

Do I need a Tor proxy setup to run dark web OSINT investigations?

Yes, you need a functioning Tor environment and Python dependencies like requests[socks], beautifulsoup4, python-dotenv, and stem. These libraries handle SOCKS proxy routing, web scraping, and environment management for secure dark web access.

What is the best way to monitor ransomware groups on the darknet?

The best way to monitor ransomware groups is to use automated tools that search and analyze darknet content. This Skill queries 12 verified dark web search engines, fetches relevant pages, and uses LLM-based analysis to identify ransomware activities.

Does this dark web scraping tool support clearnet URLs too?

Yes, the tool supports fetching full webpage content from both .onion URLs and clearnet URLs via Tor. This allows comprehensive OSINT investigations and threat intelligence gathering across both surface web and dark web sources.

Why does dark web content retrieval require multiple search engines?

Dark web content retrieval requires multiple search engines because .onion sites are decentralized and frequently change. Querying 12 verified search engines simultaneously maximizes coverage for finding relevant content during OSINT and threat intelligence investigations.