Open Source Intelligence Tools: A Curated Practitioner Reference
FREE RESOURCE
Finding reliable open source intelligence tools is straightforward. Finding ones that actually hold up under operational conditions is harder. This reference compiles the OSINT tools and resources used by intelligence analysts, corporate security teams, investigators, and public safety professionals — vetted for utility, not just popularity.
Download the OSINT Resource Guide
The categories below list a sample from each section. The full reference includes every vetted tool across all nine categories, with analyst notes on where each one fits in an investigative workflow — and updates as the landscape changes.
Nine Categories of Vetted OSINT Tools
WHAT’S INSIDE
01
Identity Resolution
Establishing who someone is often requires pulling from multiple sources. These tools aggregate public records, verify contact information, and correlate identifiers — names, phones, emails, addresses — to help build a clear picture of a subject from open data.
SAMPLE TOOLS
Espysys • IDCrawl
02
Facial Recognition & Reverse Image Search
When a name isn’t available but a photo is, these tools can help. This category covers facial recognition search engines and reverse image platforms useful for identity matching, verifying whether an image is authentic, and tracing where a photo has appeared online.
SAMPLE TOOLS
FaceCheck.ID • Lenso.ai
03
Court & Incarceration Records
Public legal records are among the most reliable open sources for subject history. These tools provide access to federal and state court opinions, case aggregation across jurisdictions, and real-time custody status monitoring.
SAMPLE TOOLS
CourtListener • JudyRecords
04
Social Media & Forums
Open platforms generate significant threat-relevant activity. This category covers search and monitoring tools for X, Reddit, Telegram, and fringe platforms — including resources specifically designed for tracking extremist and fringe content.
SAMPLE TOOLS
4chan Search • XTea
05
Domain & Infrastructure
When an online presence needs to be attributed, domain and WHOIS tools provide a starting point. This category supports tracing website ownership, IP attribution, and infrastructure history.
SAMPLE TOOLS
DomainTools WHOIS
06
Aviation & Maritime
Aircraft and vessel tracking tools provide real-time and historical movement data. Relevant for executive protection advance work, logistics verification, and monitoring assets or persons of interest with known travel patterns.
SAMPLE TOOLS
FlightAware • MarineTraffic
07
Web History
Websites change and content disappears. Archived web tools allow analysts to reconstruct how a site or page appeared at a specific point in time — useful for capturing deleted content and establishing timelines.
SAMPLE TOOLS
Wayback Machine
08
Large OSINT Tool Collections
This list is deliberately focused. For analysts who need broader coverage, these curated indexes and directories catalog hundreds of additional tools organized by category, use case, and pricing.
SAMPLE TOOLS
OSINT Rack • The OSINT Vault
09
Miscellaneous
& Operational
Specialized resources that don't fit neatly into the categories above. Includes vehicle rental monitoring, mobile tracing, corporate records lookup, and ISP reference tools relevant to specific investigative contexts.
SAMPLE TOOLS
Mobitrace • OpenCorporates
OSINT Tools FAQs
COMMON QUESTIONS
-
OSINT tools are software, websites, and services that help locate and organize publicly available information — public records, social media activity, domain registration data, archived web content, and more. They surface raw information. Interpreting it, assessing source credibility, and determining what it means in context remains analytical work.
-
The tools in this reference are free to use, though several offer paid tiers with expanded functionality. Availability and terms change frequently — verify current pricing and terms before relying on any tool for operational work.
-
The tools listed access publicly available information, which is generally lawful to collect. Legality depends on jurisdiction, purpose, and how the information is used — particularly for employment screening, tenant screening, or other applications governed by the Fair Credit Reporting Act in the United States. Consult legal counsel for guidance specific to your use case.
-
A tool performs a specific function: searching a records database, tracing a domain, reversing an image. A platform integrates collection, monitoring, and analysis into a continuous workflow. The distinction that matters operationally is analysis — tools return results, while a platform built around analyst judgment returns assessments.
-
Most tools in this reference require no coding or specialized software. What they require is analytical discipline — knowing which tool fits the question, how to verify what it returns, and when a result is too thin to rely on.
-
The guide is reviewed and updated as tools change, disappear, or new ones prove useful in practice. Everyone who downloads it receives updated editions.
How We Select These OSINT Tools
This guide is maintained by Semper Incolumem, an intelligence analysis firm serving corporate security, executive protection, law enforcement, and government clients. We work with open source intelligence daily. This list reflects the tools we find worth knowing about.
It is not exhaustive, and it is not an endorsement. Inclusion means a tool is worth being aware of. How you apply it depends on your use case, your legal context, and your analytical judgment.
These tools surface information. They do not resolve the conditions that make open-source work difficult in the first place — volume, disinformation, verification burden, and the structural limits of what public sources can show. We covered those in detail: OSINT challenges and limitations. Analyst-led collection and verification is what closes that gap — the approach behind the OSINT Platform.
A Note on Inclusion
The sources listed are provided for informational purposes only. Inclusion does not constitute an endorsement or warranty by Semper Incolumem regarding accuracy, suitability, or completeness.
Semper Incolumem disclaims liability for any loss or damage arising from use of these sources or any transaction with listed vendors. The list is updated periodically; verify tool availability and terms before operational use.
Looking for More Than a Tool List?
The tools in this guide surface raw information. Turning that information into intelligence — prioritized, contextualized, and actionable — is a different discipline. Semper Incolumem provides analyst-led intelligence to corporate security teams, executive protection professionals, law enforcement, and government clients through two core offerings.
The OSINT Platform delivers continuous situational awareness through analyst-written strategic intelligence reports, a proprietary threat prioritization system, and geo-tagged map alerts — built for professionals who need to stay ahead of threats, not just aware of them.
Custom Threat Assessment Reports provide on-demand analyst work for specific people, places, or events — when a one-time decision requires structured intelligence rather than a subscription.

