What problem does it solve?
Provide a repeatable, ethical methodology to collect, normalize, and correlate open-source intelligence for targets such as usernames, domains, emails, and organizations so investigators can produce defensible findings without ad-hoc workflows.
Core Features & Use Cases
- Username and profile enumeration: Multi-platform checks and cross-platform correlation to locate user identities and associated accounts.
- Domain and infrastructure intelligence: DNS, WHOIS, certificate transparency, and subdomain discovery to map attack surface and ownership.
- Email and breach assessment: Verify MX/SPF/DMARC records, check breach exposures, and infer organizational address patterns.
- Dark web and CTI aggregation: Aggregate feeds, classify indicators with confidence levels, and prioritize threat indicators.
- Integration and auditing: Store entities in a memory MCP graph, log actions to audit trails, and follow legal and rate-limit safeguards.
- Use Case: Run a targeted investigation to enumerate a suspicious username across platforms, gather linked domains and email variants, and export a confidence-scored findings table for a security report.
Quick Start
Use the osint-recon skill to enumerate usernames, gather domain and email evidence for target example.com, and return a confidence-scored findings summary.