Token导航 LogoToken导航TokenDH.com
研究检索需要联网github未标认证来源可访问许可证需确认审计提醒

osint-methodsosint 方法

Agent Skill

osint-methods 用于查找、检索和筛选相关信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要根据关键词、任务场景或来源线索快速定位候选结果时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

618

周安装

26

GitHub Stars

6

下载量

216
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

2

许可证

unknown

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:osint-methods(osint 方法)
来源仓库:https://github.com/hack23/homepage
仓库路径:skills/osint-methods
安装命令:
npx skills add https://github.com/hack23/homepage --skill osint-methods
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。该命令会通过 npx skills 从第三方来源获取 Skill;本站只展示命令,不托管安装包,也不自动执行。

skills.shnpx skills
npx skills add https://github.com/hack23/homepage --skill osint-methods

简介

osint-methods 用于查找、检索和筛选相关信息,适合在需要根据关键词快速定位候选结果的场景中使用。

  • 适用于研究检索类任务,可结合来源仓库和原始 README 核验具体用法。
  • 通过 npx skills add 命令从 hack23/homepage 仓库安装。
  • 安装前建议确认权限范围和维护状态,避免触发联网或文件读写操作。
  • 使用时需注意工具输出不能直接作为最终结论,应结合实际场景验证结果。

SKILL.md

OSINT Methods Skill

Purpose

Provides ethical Open Source Intelligence (OSINT) methodologies for political analysis, security research, and transparency projects, emphasizing verification, privacy protection, and responsible disclosure.

Rules

OSINT Principles (MUST Follow)

Core Principles:

1. Legality & Ethics
   - MUST only use publicly available information
   - MUST NOT hack, breach, or social engineer
   - MUST respect privacy and data protection laws (GDPR)
   - MUST follow responsible disclosure for vulnerabilities
   - MUST NOT collect or retain personal data unnecessarily

2. Verification & Accuracy
   - MUST verify information from multiple sources
   - MUST distinguish fact from opinion
   - MUST track source credibility and bias
   - MUST document collection methodology
   - MUST correct errors promptly

3. Privacy & Security
   - MUST anonymize sensitive information
   - MUST use VPN/Tor when appropriate
   - MUST protect source confidentiality
   - MUST secure collected data
   - MUST dispose of data appropriately

4. Transparency & Attribution
   - MUST cite sources and methodology
   - MUST disclose limitations and biases
   - MUST distinguish between collection and analysis
   - MUST provide context for findings

OSINT Collection Framework

Intelligence Cycle:

1. Planning & Direction
   - Define intelligence requirements
   - Identify information gaps
   - Prioritize collection efforts
   - Establish ethical boundaries

2. Collection
   - Gather data from public sources
   - Document source metadata
   - Preserve digital evidence
   - Maintain chain of custody

3. Processing & Exploitation
   - Organize collected information
   - Extract relevant data points
   - Convert formats as needed
   - Tag and categorize findings

4. Analysis & Production
   - Verify information accuracy
   - Identify patterns and relationships
   - Contextualize findings
   - Generate intelligence products

5. Dissemination & Feedback
   - Share findings with stakeholders
   - Protect sensitive information
   - Solicit feedback and questions
   - Refine collection priorities

OSINT Sources & Categories

Public Records & Databases:

Government Sources:
- Corporate registries (Bolagsverket in Sweden)
- Public procurement databases
- Court filings and legal documents
- Parliamentary records and votes
- Freedom of Information (FOI) responses
- Property and land records
- Regulatory filings

International Sources:
- EU transparency register
- UN databases
- World Bank open data
- ICIJ databases (Offshore Leaks, Paradise Papers)

Digital Footprints:

Social Media:
- LinkedIn (professional networks)
- Twitter/X (public statements, opinions)
- Facebook (groups, pages, events)
- Instagram (visual content, locations)
- YouTube (video content, comments)

Websites & Domains:
- WHOIS lookups
- Historical snapshots (Wayback Machine)
- SSL certificate transparency logs
- DNS records and subdomains
- Metadata analysis

News & Media:

Traditional Media:
- News articles and archives
- Press releases
- Broadcast transcripts
- Investigative reports

Alternative Media:
- Blogs and independent journalists
- Podcasts and video channels
- Newsletters
- Community forums

Technical Intelligence:

Network Intelligence:
- IP address geolocation
- Autonomous System (AS) information
- BGP routing data
- Shodan/Censys IoT/device searches

Document Intelligence:
- Leaked documents (WikiLeaks, SecureDrop)
- FOIA documents
- Academic research papers
- Technical reports and whitepapers

OSINT Tools & Techniques

Search & Discovery:

Google Dorking:
- site:gov.se "contract award"
- filetype:pdf "annual report" Sweden
- intitle:"index of" procurement
- inurl:admin site:example.com

Social Media Tools:
- Twitter Advanced Search
- LinkedIn Sales Navigator
- Facebook Graph Search
- Instagram location search
- Reddit search and archives

Specialized Search:
- Shodan (IoT devices, exposed services)
- Censys (internet-wide scans)
- FOCA (metadata extraction)
- Maltego (link analysis)
- Recon-ng (OSINT framework)

Verification Techniques:

Image Verification:
- Reverse image search (Google, TinEye, Yandex)
- EXIF metadata analysis
- Geolocation from visual clues
- Photo forensics (FotoForensics)

Account Verification:
- Cross-platform username search
- Account creation date verification
- Follower/network analysis
- Content history review

Document Verification:
- Metadata analysis
- Format forensics
- Language and style analysis
- Cross-reference with known documents

OSINT Analysis Methods

Link Analysis:

Network Mapping:
- Identify relationships between entities
- Map organizational structures
- Trace financial flows
- Visualize influence networks

Tools:
- Maltego
- Gephi
- NodeXL
- i2 Analyst Notebook

Timeline Analysis:

Chronological Mapping:
- Sequence events accurately
- Identify temporal patterns
- Correlate activities across sources
- Detect anomalies and gaps

Techniques:
- Event extraction from documents
- Date correlation across sources
- Activity pattern analysis
- Behavioral change detection

Pattern Recognition:

Behavioral Patterns:
- Communication patterns
- Location patterns
- Financial patterns
- Social network patterns

Anomaly Detection:
- Unusual transactions
- Pattern breaks
- Timing anomalies
- Relationship changes

GDPR Compliance in OSINT

Data Protection Requirements:

Lawful Basis:
- MUST have legitimate interest or consent
- MUST conduct Data Protection Impact Assessment (DPIA)
- MUST document legal basis for processing

Data Minimization:
- MUST collect only necessary information
- MUST NOT retain data longer than needed
- MUST delete or anonymize when possible

Individual Rights:
- MUST provide transparency about collection
- MUST allow access, rectification, erasure requests
- MUST respect opt-out and do-not-track

Security Measures:
- MUST encrypt stored OSINT data
- MUST restrict access to authorized personnel
- MUST log and monitor data access
- MUST have breach notification procedures

Responsible Disclosure

Vulnerability Disclosure:

Process:
1. Identify security vulnerability in public system
2. Document finding with screenshots/evidence
3. Contact organization privately (security@domain)
4. Allow 90 days for remediation
5. Coordinate public disclosure if appropriate
6. Do NOT exploit or share exploit code

Example Message:
"I've identified a potential security issue in your system
during research. I'd like to report it responsibly. Please
confirm the best way to share details securely."

OSINT Documentation Standards

Research Documentation:

Collection Record:
- Source URL and access date
- Preservation method (screenshot, archive.org, PDF)
- Search queries or discovery method
- Relevance to intelligence requirement
- Initial assessment notes

Analysis Documentation:
- Analytical framework used
- Key findings and evidence
- Confidence level (High/Medium/Low)
- Alternative hypotheses considered
- Limitations and gaps
- Recommendations

Report Structure:
1. Executive Summary
2. Intelligence Requirements
3. Methodology
4. Findings (with evidence)
5. Analysis and Assessment
6. Confidence Levels
7. Recommendations
8. Appendices (sources, tools, raw data)

Examples

OSINT Research Request Template

## Intelligence Requirement

**Topic**: [Specific question or information need]
**Purpose**: [How findings will be used]
**Priority**: High / Medium / Low
**Deadline**: [Date]

**Scope**:
- Geographic: [Countries, regions]
- Temporal: [Time period]
- Entities: [Organizations, individuals, topics]

**Constraints**:
- Legal: [GDPR, privacy laws]
- Ethical: [Sensitive topics, personal data]
- Technical: [Access limitations]

**Deliverable**: [Report format, briefing, database]

Source Credibility Assessment

## Source Evaluation

**Source**: [Name, URL, type]
**Date Accessed**: [YYYY-MM-DD]

**Credibility Factors**:
- Authority: [Subject matter expertise] ⭐⭐⭐⭐☆
- Accuracy: [Verification record] ⭐⭐⭐⭐⭐
- Objectivity: [Bias assessment] ⭐⭐⭐☆☆
- Currency: [Timeliness] ⭐⭐⭐⭐☆
- Coverage: [Depth and breadth] ⭐⭐⭐⭐☆

**Overall Rating**: 4/5 - Reliable with minor bias

**Notes**: [Specific observations about source reliability]

OSINT Report Template

# OSINT Report: [Topic]

**Classification**: Public / Internal / Confidential
**Date**: [YYYY-MM-DD]
**Analyst**: [Name]

## Executive Summary
[2-3 paragraph summary of key findings]

## Intelligence Requirements
[What questions this research aimed to answer]

## Methodology
- **Sources**: [Types of sources used]
- **Tools**: [OSINT tools employed]
- **Time Period**: [Research duration]
- **Limitations**: [Known gaps or constraints]

## Key Findings

### Finding 1: [Title]
**Confidence**: High / Medium / Low
**Evidence**: [Supporting information with sources]
**Analysis**: [What this means]

### Finding 2: [Title]
[Same structure]

## Assessment & Implications
[Analysis of what findings mean in context]

## Recommendations
[Actionable suggestions based on findings]

## Appendices
- Appendix A: Source List
- Appendix B: Methodology Details
- Appendix C: Raw Data

Related Policies

Related Documentation

Tools & Resources

OSINT Frameworks:

Training Resources:

  • Bellingcat's Online Investigation Workshops
  • SANS SEC487: Open-Source Intelligence (OSINT) Gathering and Analysis
  • Trace Labs OSINT Search Party Events

Verification Tools:

  • InVID/WeVerify (video/image verification)
  • Google Fact Check Explorer
  • Full Fact (UK fact-checking)

Privacy & Security:

  • Tor Browser
  • ProtonVPN
  • Tails OS (for sensitive research)

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Codex

33.86%
按下载量换算73

Claude

31.54%
按下载量换算68

Cursor

20.03%
按下载量换算43

Gemini CLI

10.66%
按下载量换算23

安全审计

Gen Agent Trust Hub

通过

Socket

通过

Snyk

可疑

权限和风险

需要联网

该 Skill 可能需要联网访问来源站点、仓库或外部 API;具体网络访问范围需要结合源码和 README 复核。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。来源安全扫描存在 warning/failed 结果,不能写成本站确认安全。当前只有一个来源,正式发布前建议补源仓库或其他目录站核验。

来源信息

继续浏览同类 Skills