Awesome-OSINT-List (“Awesome OSINT For Everything”)
A single-file catalog of OSINT tools and websites maintained by Astrosp on GitHub — ~1,730 links under roughly 90 top-level sections in one 2,300-line README, GPL-3.0, ~4.1k★ / 534 forks / 343 commits. Its own subtitle states the ambition: tools for “pentration [sic] testing, Reverse Searching, Red team Oprations [sic], information gathering, bugbounty and almost cover everything in single file.”
T4 — a community link list. Nothing in it is tested, ranked, or dated, and the typos in the header line are a fair signal of the editorial standard. Its value here is not any tool it names; it is the census: this is the widest picture the spoke has of what the field’s toolkit actually consists of.
What the shape of it says
Most of OSINT is not software. The dominant entry is a hosted web service you open in a browser — Dehashed, Have I Been Pwned, Intelligence X, GreyNoise, people-search sites, flight and maritime trackers, sanctions and most-wanted search engines, dozens of Google Custom Search Engines. The spoke’s corpus is almost entirely the opposite: llm-osint, kallisto-osinter, gitsint, swaggerspy, cloakquest3r, myip, strix are all repositories you run. This list says that corner is a minority of the practice. That is a real correction to the picture the spoke has been building, and it costs nothing to state: we selected for GitHub because GitHub is what arrives as a link.
The subject categories go where the tool categories don’t. Alongside the expected technical sections (Recon, WHOIS, Domain/IP/DNS, Metadata, Dork, Search Engines) sit People, Resident Database, Public Records, Police / LE / Fed, Informant, Extremist / Far-Right, War / Military Conflict, and Government. These are organized by who or what you are investigating, not by technique. The far-right section is the clearest case of the dual-use character this spoke keeps flagging: it mixes journalism and research infrastructure (DDoSecrets, Unicorn Riot’s Discord leaks, ProPublica’s Parler archive, START’s Global Terrorism Database, OFAC sanctions search) with raw leak dumps and no-fly-list mirrors. The same shelf serves an investigative reporter and someone building a dossier on a person.
The “AI” section is mostly not AI-for-OSINT. Nine of its eleven subsections are general AI assistants, AI search, AI image/video generation, productivity tools, detection/verification — and a large LLM Security block (vulnerability testing, red teaming, jailbreak and prompt-injection resources, model and dataset security). Only one short subsection is “AI for OSINT & Threat Intelligence.” The list treats AI mostly as something to investigate and attack, not as the engine of investigation. That is a striking counterweight to ai-osint, which the spoke has called its leading edge; on this evidence the automation story is a frontier, not yet the mainstream of practice.
Bug bounty is an entire wing. The final ~100 lines are attack-surface discovery, enumeration, vulnerability scanning, fuzzing, API testing, exploitation frameworks and mobile security. The list does not treat that as a neighboring field — it treats it as part of the same file. This is direct evidence for the spoke’s standing “how far past OSINT” question: practitioners already draw the boundary where strix and autonomous-pentesting put it, at the whole offensive chain.
Why it matters here
Three ways. It is the spoke’s field census — the first source that shows the toolkit’s overall composition rather than one instrument in it. It corrects a selection bias in the corpus toward runnable repositories over hosted services. And it independently corroborates the broadening that swaggerspy, gitsint and strix pushed one source at a time.
It is a weaker sibling of awesome-social-engineering: same genre and roughly the same star count, but that one curates a discipline’s literature and scopes itself with an ethics disclaimer, while this one accumulates links across everything and carries no disclaimer, no inclusion criteria, and no dates. A link that resolved when it was added may be dead, sold, or renamed now, and the list gives you no way to tell.
Related
astrosp · osint · ai-osint · awesome-social-engineering · autonomous-pentesting · strix · username-reconnaissance · ip-reconnaissance · social-engineering · synthesis