osint-methodology

Guide structured OSINT investigations from scoping to reporting.

2.9k|469|Updated Mar 4, 2026
One-click install
npx skills add https://github.com/SnailSploit/Claude-Red --skill osint-methodology
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: osint-methodology
Source: https://github.com/SnailSploit/Claude-Red/tree/main/Skills/offensive-osint-methodology
Command: npx skills add https://github.com/SnailSploit/Claude-Red --skill osint-methodology

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides a comprehensive, step-by-step framework to conduct Open Source Intelligence (OSINT) investigations systematically, ensuring thoroughness and efficiency.

Core Features & Use Cases

  • Structured Methodology: Guides users through every phase of an OSINT campaign, from initial scoping and OpSec to data analysis and reporting.
  • Tooling & Techniques: Details specific tools and methods for various OSINT tasks, including cryptocurrency tracing, image/video analysis, and threat actor profiling.
  • Use Case: A security analyst needs to investigate a suspicious online persona. They can use this Skill to follow a proven methodology, identify relevant tools for gathering information, and correlate findings to build a comprehensive profile.

Quick Start

Use the osint-methodology skill to guide me through the initial steps of profiling a new target.

Frequently Asked Questions about osint-methodology

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What is a structured OSINT methodology and when do I need it for an investigation?

A structured OSINT methodology provides a systematic framework for intelligence gathering and analysis. You need it during investigations to ensure thoroughness, covering phases from initial scoping and operational security to data correlation and reporting.

How do I investigate a suspicious online persona using OSINT reconnaissance?

You investigate a suspicious online persona by following a structured OSINT methodology to gather information, identify relevant specialized tools, and correlate findings to build a comprehensive threat actor profile.

Can I use this framework for cryptocurrency investigation and image analysis?

Yes, this framework supports cryptocurrency investigation and image and video analysis. It details specific tools and techniques for these specialized intelligence collection tasks alongside chronolocation and infrastructure OSINT.

Do I need specialized tools to perform systematic intelligence gathering?

Yes, systematic intelligence gathering utilizes a wide array of specialized tools. This framework details specific methods and tooling for various tasks like social media investigation, threat actor profiling, and infrastructure analysis.

What is the best way to maintain operational security during an OSINT campaign?

The best way to maintain operational security is to follow a structured methodology that guides you through every phase of an OSINT campaign, starting from initial scoping and OpSec setup before any reconnaissance begins.

How does chronolocation work in an Open Source Intelligence investigation?

Chronolocation works by analyzing visual and contextual data to determine the time and location of an event. This framework integrates chronolocation with image and video analysis for comprehensive intelligence collection.