osint-recon

Correlate public-source intelligence into structured OSINT reports with confidence scoring.

345|47|Updated Mar 13, 2026
One-click install
npx skills add https://github.com/briiirussell/cybersecurity-skills --skill osint-recon-briiirussell
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: osint-recon
Source: https://github.com/briiirussell/cybersecurity-skills/tree/main/skills/osint-recon
Command: npx skills add https://github.com/briiirussell/cybersecurity-skills --skill osint-recon-briiirussell

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps you gather and connect relevant information from publicly available sources so you can build a defensible picture of a target’s digital footprint and related threats.

Core Features & Use Cases

  • Public OSINT collection for domains, organizations, and artifacts: consolidates registration/DNS signals, organization filings, job/presence indicators, and document metadata into a coherent dataset.
  • Threat-intelligence enrichment and validation: cross-references results across multiple sources, rates confidence, and highlights gaps to reduce false conclusions.
  • Evidence-ready reporting for authorized investigations: produces a structured OSINT report with objectives, findings, correlations, and recommended next steps.

Quick Start

Ask the AI to run an OSINT recon report for the domain example.com to identify exposed infrastructure, related organizations, potential breach signals, and confidence-rated findings.

Frequently Asked Questions about osint-recon

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I map a target's digital footprint using open source intelligence?

Open source intelligence collection maps a digital footprint by consolidating registration signals, DNS data, organization filings, and document metadata into a coherent dataset for authorized investigations.

What is the best way to assess an organization's attack surface from public sources?

Assessing an attack surface from public sources involves cross-referencing infrastructure data and leaked exposure indicators, then rating confidence levels to reduce false conclusions about exposed assets.

How do I validate and cross-reference OSINT findings to avoid false conclusions?

Validating OSINT findings requires cross-referencing results across multiple public sources, applying confidence scoring, and highlighting gaps to reduce the risk of false conclusions in threat-intelligence enrichment.

Can I generate a structured OSINT report for authorized investigations?

You can generate a structured OSINT report for authorized investigations that includes objectives, correlated findings, confidence ratings, and recommended next steps for evidence-ready documentation.

Does OSINT recon work without specialized threat intelligence tools?

OSINT recon works using only public sources to perform collection, cross-referencing validation, confidence scoring, and structured reporting without requiring specialized threat intelligence tool dependencies.

When should I not use open source intelligence gathering for domain research?

Open source intelligence gathering should not be used outside authorized investigations, as the process enforces strict ethics and scope boundaries to ensure defensible public data collection.