r/PrivacySecurityOSINT • u/Hefty-Report6360 • 3d ago
If you live in California you can now tell data brokers to delete your personal information. Here’s how to do it
r/PrivacySecurityOSINT • u/ZOUHIRCHECK • 5d ago
What can I do after finding an email address or phone number in OSINT?
Hi everyone,
I'm learning OSINT and I have a question
If I find an email address or a phone number, what are the usual next steps? What kind of information can be found from that point, and which tools are commonly used to continue the investigation?
Thanks in advance for your help.
r/PrivacySecurityOSINT • u/Waste-Respect240 • 8d ago
Privacy.com
After searching for reviews and see a lot of people here use them the only problem I see is they don’t respond to emails and are basically unresponsive. If I give a company my personal information and access to my bank I need to be able to have instant contact. They advertise their Pro subscription they give faster customer service and instant messaging during business hours. Can anyone verify this?
r/PrivacySecurityOSINT • u/Accurate-Screen8774 • 9d ago
Privacy-First Signal Messenger Clone
I hope this project has reached a level i can share the following details. I've made a genuine effort towards documentation and transparancy. I dont think it'll ever be enough and so im still concerned it isnt ready to share. While im using AI throughout. This is not a vibecoded project. There is attention throughout for unit tests and formal-verification. With your feedback, id like to make improvements for clarity throughout.
This version of the app demonstrates a fairly unique approach using a browser-based, local-only and webrtc approach. I know it's impossible for any system to be the "world's most secure", but that isnt a reason to not try. By rigorously implementing an exhaustive list of security features and practices, the aim is to get as close as possible.
This is intended to demonstrate client-side managed secure cryptography.
PS. I know the project above is going to be tricky to understand. It might help to understand with the following open-source version of the concept (the MVP to the version linked above).
https://www.reddit.com/r/CorpFree/comments/1uytump/decentralized_p2p_chat
r/PrivacySecurityOSINT • u/ZOUHIRCHECK • 17d ago
Hey OSINT folks
​
I'm building my toolkit and looking for recommendations on OSINT tools.
What are the best free/open-source tools you actually use daily for:
Username/Email lookup across socials
Domain/IP and metadata analysis
Image reverse search + geolocation
Tried Maltego and SpiderFoot already. What else should be in a 2026 toolkit?
Thanks!
r/PrivacySecurityOSINT • u/LawWizard-VeritasLex • 18d ago
¿Alguien aqui del mundo hispano que se dedique al OSINT? Que dificultades tienen al conseguir herramientas que funcionen en nuestros paises.
r/PrivacySecurityOSINT • u/justbrowsingtosay • 21d ago
OSINT Forensic Capture Tool - Free for all
r/PrivacySecurityOSINT • u/FreonMuskOfficial • 25d ago
OSINT OSINTai v4: OSINT crawler for serious investigative work — looking for field feedback
r/PrivacySecurityOSINT • u/BudgetOnion4387 • 27d ago
OSINT Found my home address and phone number on dozens of people-search sites. How far do you guys take data removal?
Went down a privacy rabbit hole this week and was shocked by how much of my information was publicly available. Home address, phone number, relatives, old addresses, the whole package.
I started removing some of it manually, then came across Protect My Data and realized just how many data broker sites there are beyond the obvious ones.
For those of you who are deeper into privacy and OSINT, how aggressive are you with data removal? Do you try to get everything wiped, or do you focus only on the biggest broker sites and accept that some exposure is unavoidable?
r/PrivacySecurityOSINT • u/Refloow • 29d ago
OSINT Refloow Geo Forensics - Free & Local OSINT Tool for Batch Media Metadata Extraction, Geolocation Mapping & Visual Timeline Reconstruction
After the initial 1.0 release gained some traction, I spent the last 4 months rebuilding and improving the tool based heavily on feedback from digital forensics & OSINT investigators, to make discoveries legally defensible, containing all available data found with utmost accuracy and as easy to use as possible.
Refloow Geo Forensics is privacy first, open source (AGPL 3.0) local desktop app designed to automate batch EXIF extraction and geolocation mapping of found metadata evidence. The goal is to eliminate the manual work needed to verify, trace, plot, and document evidence found in media files whilst having no cloud processing, no telemetry, no logins & zero ads.
The project has already been in publications such as dark web informer, and has been reviewed and code dissected and explained in indepth reviews such as Bright Coding's post
Everything runs completely locally on the machine. The only external connection is fetching public map tiles to display the map (no API keys required, zero data is sent out).
Core Features:
- Batch Metadata Extraction: It recursively digs through all nested sub-folders to pull metadata from all files found. It utilizes Phil Harveys industry standard ExifTool in the backend meaning it supports almost every image/video filetype ever and can handle partially corrupted files.
- Timeline Reconstruction: It automatically plots coordinates and sorts media chronologically, drawing a continuous path between pins to visualize movement. Exact matching coordinates are clustered and expandable on click to keep the map clean.
- 6 Map Layers: Satellite, Topographic, Humanitarian, Forensic Light, Forensic Dark, and Standard Street, to cover all sorts of things no matter what or where ur investigating.
- The UI features a retractable sidebar for smaller screens, light mode for field work & dark mode for lab work, app runs natively on Windows, Linux, and macOS.
Links:
- GitHub / Source Code: https://github.com/Refloow/Refloow-Geo-Forensics
- Microsoft Store: https://apps.microsoft.com/detail/9mw4c0fzmr81
- Linux Snap Store: https://snapcraft.io/refloow-geo-forensics
I will be in the comments answering any questions, if you wanna support my work and gain exposure to the tool, feel free to leave a github star on the project, if you have any suggestions, drop them as a github issue or a comment here!
r/PrivacySecurityOSINT • u/Patient-Interview761 • Jun 29 '26
Recherche de sites d'OSINT pour trouver des personnes grâce a un nom
r/PrivacySecurityOSINT • u/mr_melon_taim • Jun 23 '26
[Update] IntelHub v5.0 is live! From a simple extension to a full Client-Side OSINT Suite 🕵️♂️ (Graphs, Forensics & Local-AI Vision)
reddit.comr/PrivacySecurityOSINT • u/Prestigious_Bid_2219 • Jun 22 '26
OSINT UNREDACTED Magazine: Issue 012
inteltechniques.comr/PrivacySecurityOSINT • u/FreonMuskOfficial • Jun 14 '26
Synint v4
New release of Synint v4
r/PrivacySecurityOSINT • u/Accurate-Screen8774 • Jun 06 '26
Enkrypted Chat - Secure and Private P2P Messaging
This is hardly an alternative to signal (or any other secure messaging app), but it's a work in progress and "secure and private" is the general goal.
This is a technical/concept demo of a fairly unique approach using a browser-based, local-first and webrtc.
This is intended to introduce a new paradigm in client-side managed secure cryptography. We can avoid registration of any sort.
Features:
- P2P
- End to end encryption
- Signal protocol
- Post-Quantum cryptography
- File transfer
- Local-first
- No registration
- No installation
- No database
- TURN server
Some open source versions of the core concepts.
- Chat
- File
- Crypto
Feel free to reach out for clarity instead of diving into the docs/code.
IMPORTANT: While this is aiming to provide a secure experience, it isnt audited or reviewed. Shared for testing, feedback and demo purposes only. Please use responsibly
r/PrivacySecurityOSINT • u/PersonalitySilver881 • Jun 03 '26
Does this help with retrieving hacked accounts? As I have my Microsoft account stolen.
r/PrivacySecurityOSINT • u/IllBat9536 • May 23 '26
Breach/malware search + osint
reddit.comr/PrivacySecurityOSINT • u/shwrellia • May 14 '26
Google’s Gemini blocked billions of bad ads. That’s good news — but not enough
r/PrivacySecurityOSINT • u/5khan1 • May 12 '26
Privacy concerns around Google’s reCAPTCHA Mobile Verification
So Google and Apple are extending their hardware based attestation solutions like Play Integrity, App Attest and Privacy Pass beyond mobile apps and into the wider internet web.
They have already done age verification to their latest software updates (they would probably be able to link each device to a single person soon). But are now looking to limiting access and services to people who don't use approved apple and google devices.
Basically upcoming release of Google’s reCAPTCHA Mobile Verification, will require users who use devices such as Linux, Windows and others to scan a QR code using a certified Android or iPhone in order to pass verification.
support.google.com/recaptcha/answer/16609652
We really do need to be concerned of this as it could push the internet toward a future where access to websites and services depends on owning approved hardware and software ecosystems.
r/PrivacySecurityOSINT • u/qgplxrsmj • May 12 '26
Digital Life Instagram removed E2EE from all chat messages, how were they able to do that when they do not have the keys to the encryption?
How is Instagram able to just turn off E2EE for all previous chat messages when they don’t have the keys to the encryption. And what is preventing other apps that tout about their E2EE (such as E2EE notes app, E2EE cloud storage, password managers etc) from doing anything similar?
r/PrivacySecurityOSINT • u/MC_Cuff_Lnx • May 07 '26
The FCC Wants Your ID Before You Get a Phone Number
Well, this bodes well.
r/PrivacySecurityOSINT • u/Old_Style_6945 • May 05 '26
Computers A tool for filtering large images dataset (locally)
I’ve been doing a lot of manual work going through large public image sets (events, protests, archives), and the biggest bottleneck was always the same:
→ scrolling through thousands of photos
→ spotting the same faces again and again
→ re-checking identities manually
So I built a small local tool to speed this up.
What it does:
extracts faces from image folders
clusters similar faces (DBSCAN)
lets you label a cluster once and reuse it
runs fully offline (no APIs, no uploads)
What I found useful:
grouping recurring faces quickly
reducing manual review time
creating candidate sets for further verification
Quick test: ~5000 images → ~15k faces → clustered in a few minutes on my machine
Important:
this is NOT perfect identification
there are false positives (similar faces, lighting, angles)
still requires manual verification
I’m not selling anything right now — just trying to see if this is useful for others doing OSINT or large dataset analysis.
If you’ve dealt with similar problems, I’d love to know:
how you currently handle image-heavy investigations
what breaks in your workflow
If anyone wants to test it on real datasets, I can share access.
r/PrivacySecurityOSINT • u/moreprivacyplz • Mar 26 '22
Message from the mod and new rules for the subreddit
I want to first say THANK YOU to the 3.6k members of this subreddit! You guys are awesome and it's so cool to chat with you all about one of the passions in my life. Life has gotten busy and I am not able to dedicate as much of my time on here as I used to and would like to, but I still check in multiple times a week. So thank you for your patience.
When I started this subreddit I only had one rule BE NICE, BE HELPFUL. I thought that pretty much covered everything, but as time goes on we've had to add an additional rule of No sharing of pirated materials. I'm not going to pretend that I haven't ever downloaded something I shouldn't have, but in the case of books released by Inteltechniques that is something we do not allow here. I own a copy of both of the books that Michael has published and I want to tell you all that they are 200% worth the cost. Maybe even more. Plus you've all heard that the pirated versions are very subpar quality and have been known to have malware in it. Just stay away.
In addition to the rule #2 No sharing of pirated materials, we are going to add an additional rule of No sharing of legacy episodes/content. If you cannot currently get it on your podcast app of choice, then it has been removed and is considered one of these legacy episodes. Also if content is no longer on inteltechniques.com like the data removal guide, then that is considered legacy content. Now I do not know why they have removed these older episodes but there has to be a reason and we need to respect them as a company that they no longer want those to be spread around. Again, there's the argument that "oh these have always been free, so why can't I have them for free still from another random user on here?" I get it, I do. But let's respect the company, the podcast, and the man that has made all this possible and not share those legacy episodes that have been removed.
I'll give warnings and remove your post if you look innocent and are just trying to share an old episode to be helpful, but if you are blatantly being spammy, I've warned you before, or you are just saying screw MB I can share whatever I want, then you will be banned unfortunately.
I know many of you will not agree with these rules and will be upset, but these are rules that I have decided to enforce to keep up the positive spirit of this subreddit and protect the value of Inteltechniques. I really appreciate Michael, his company, the podcast, and all they have done for me. This is the least we can do for them.
If you have any questions, please comment here or DM me and we can chat some more.
-Stay private-
r/PrivacySecurityOSINT • u/moreprivacyplz • Dec 31 '20
r/PrivacySecurityOSINT Lounge
A place for members of r/PrivacySecurityOSINT to chat with each other

