10 free OSINT tools powered by real public APIs. DNS, WHOIS, IP Geolocation, SSL, Subdomains, Port Scan, Google Dorks, Mail Headers, Breach Check, Username Hunt. No API keys. No login. Download and run locally.
Save the HTML file and open it in Chrome, Firefox or Edge. No server needed.
Type any domain, IP, email or username. Tools call free public APIs directly.
Real-time data from DNS, WHOIS, IP geo, CT logs, port scan, and breach APIs.
Live DNS records via Google DNS-over-HTTPS. Queries A, AAAA, MX, NS, TXT, CNAME, SOA and CAA records for any domain.
Domain registration data via RDAP — registrant, registrar, creation/expiry dates, nameservers, DNSSEC status, domain age and security assessment.
Resolve domain to IP then get country, city, ISP, ASN, timezone, coordinates via ipapi.co. Supports both domains and raw IP addresses.
Inspect SSL/TLS certificates via certificate transparency logs. Shows issuer, validity dates, SANs, expiry countdown, and certificate history.
Passive subdomain enumeration using SSL certificate transparency logs. No active scanning — uncovers dev, staging, admin, API and other subdomains from CT log history.
Scan open TCP ports via HackerTarget's free nmap API. Returns open ports, detected services, version banners and risk ratings. No key needed.
Generate GHDB-style Google dork queries for any domain. Pick a category and get instant clickable Google search links — exposed files, login pages, configs, cameras, SQL errors and more.
Paste raw email headers to analyze SPF, DKIM, DMARC authentication, routing hops, delivery delays, and spoofing indicators. Runs entirely in your browser — nothing is sent anywhere.
Check if an email address appeared in known public data breaches. Returns breach names, dates and exposed data types from xposedornot.com public API.
Hunt a username across 25+ social media and security platforms. Generates direct profile links — click CHECK to verify if an account exists. No API calls needed.
A, AAAA, MX, NS, TXT, CNAME, SOA, CAA via Google DoH.
Registrant, registrar, expiry, DNSSEC via ICANN RDAP.
Country, ISP, ASN, coords via ipapi.co free API.
Cert validity, SANs, expiry, history via crt.sh CT logs.
Passive enumeration via SSL certificate transparency.
Open ports and services via HackerTarget free nmap API.
80+ dorks in 8 categories with live Google search links.
SPF/DKIM/DMARC, hops, delays, spoofing — 100% offline.
Email breach lookup via xposedornot.com public API.
25+ platforms — GitHub, Reddit, HackTheBox, TryHackMe+.