OSINT

Gather public-source intelligence for due diligence and threat research.

9|1|Updated Apr 16, 2026
One-click install
npx skills add https://github.com/CarbeneAI/Forge --skill osint-carbeneai
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: OSINT
Source: https://github.com/CarbeneAI/Forge/tree/main/.claude/skills/OSINT
Command: npx skills add https://github.com/CarbeneAI/Forge --skill osint-carbeneai

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

OSINT centralizes ethical, public-source intelligence gathering to support client due diligence, threat research, and security posture assessments without resorting to unauthorized or invasive techniques.

Core Features & Use Cases

  • Company Intelligence: Rapidly collect corporate structure, technology stack, breach history, and regulatory filings to produce a vendor or acquisition due-diligence report.
  • People Intelligence: Verify executive and key personnel backgrounds using public profiles, publications, and conference records while respecting privacy and legal constraints.
  • Threat Intelligence: Map threat actor TTPs to MITRE ATT&CK, compile validated IOCs, and produce defensive recommendations and detection use cases for incident response and threat hunting.
  • Use Case Example: For a pre-engagement assessment, run the Company Intelligence workflow to generate an executive summary, a risk matrix, and prioritized remediation actions with full source citations.

Quick Start

Run an OSINT Company Intelligence assessment for Acme Corp to produce an executive summary, prioritized risks, and recommended defensive actions with sources and confidence scores.

Frequently Asked Questions about OSINT

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I conduct ethical open source intelligence gathering for security due diligence?

Ethical open source intelligence gathering for due diligence uses public-source-only workflows to collect corporate structure, technology stacks, and breach history, producing risk matrices with full source citations and confidence scores.

How do I map threat actor TTPs to MITRE ATT&CK for threat research?

Mapping threat actor TTPs to MITRE ATT&CK involves analyzing public threat intelligence to identify tactics and techniques, compiling validated IOCs, and producing defensive recommendations and detection use cases for incident response.

Can I verify executive backgrounds for vendor due diligence using only public profiles?

Verifying executive backgrounds for due diligence uses public profiles, publications, and conference records to check key personnel while respecting privacy constraints and applying legal guardrails for client deliverables.

What is the best way to generate an OSINT report for a pre-engagement security assessment?

Generating an OSINT report for a pre-engagement assessment involves running a company intelligence workflow to produce an executive summary, prioritized risks, and recommended defensive actions with sources and confidence scores.

Does this OSINT workflow support unauthorized data collection techniques?

This OSINT workflow does not support unauthorized techniques; it centralizes public-source-only intelligence gathering and applies legal and ethical guardrails to ensure compliance during client due diligence and threat research.

What sources are needed to perform company intelligence and regulatory filings checks?

Company intelligence and regulatory filings checks use public corporate structure records, technology stack data, breach history, and regulatory filing sources to produce vendor or acquisition due-diligence reports.