
skytrack
Command-line aircraft OSINT tool for gathering tail numbers, ICAO codes, flight logs, and owner details from public aviation data sources, with PDF…

Command-line aircraft OSINT tool for gathering tail numbers, ICAO codes, flight logs, and owner details from public aviation data sources, with PDF…

Python API wrapper and command-line client for the tools hosted on spyse.com.

Passive URL discovery tool that collects domain-associated URLs from multiple public sources via command-line, supporting stdin/stdout and JSONL…

A command-line tool for reconnaissance and targeted write operations on Confluence and Jira instances.

A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon


A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows

Fetches JavaScript files quickly and comprehensively.

Passive subdomain discovery tool that aggregates results from multiple online sources via CLI, supporting stdin/stdout, JSONL output, and API key…

Recursively spider webpages to discover all URLs by following links, parsing sitemaps, and robots.txt files. Ideal for security reconnaissance and…

Command-line tool for fast searching of GitHub repositories, users, and commits to gather open-source intelligence and code-related information.

Command-line tool for discovering SaaS platforms a company uses via DNS enumeration

A powerful command-line interface for interacting with the [RapidDNS API](https://rapiddns.io/help/api). This tool allows you to perform DNS…

WordPress Sites Vulnerability Checker for CVE-2020-35489 - "Educational Use Only"

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…

Read-only CLI to check whether a WordPress site is exposed to WP2Shell (CVE-2026-63030 / CVE-2026-60137)

Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10

Command-line tool for discovering SaaS platforms a company uses via DNS enumeration