MR
Mayur Rathi
@sickn33
⭐ 47.3k GitHub stars

offensive-osint

offensive-osint is an code AI skill with a core value of Operational arsenal for authorized external red-team and bug-bounty recon. It helps developers solve real-world problems in the code domain, boosting efficiency, automating repetitive tasks, and optimizing workflows.

Operational arsenal for authorized external red-team and bug-bounty recon.

Last verified on: 2026-10-06

Quick Facts

Category code
Works With Claude
Source sickn33/antigravity-awesome-skills
Stars ⭐ 47.3k
Last Verified 2026-10-06
Risk Level Low
mkdir -p ./skills/offensive-osint && curl -sfL https://raw.githubusercontent.com/sickn33/antigravity-awesome-skills/main/skills/offensive-osint/SKILL.md -o ./skills/offensive-osint/SKILL.md

Run in terminal / PowerShell. Requires curl (Unix) or PowerShell 5+ (Windows).

Skill Content

> **⚠️ AUTHORIZED USE ONLY**

> This skill is for educational purposes or authorized security assessments only.

> You must have explicit, written permission from the system owner before using this tool.

> Misuse of this tool is illegal and strictly prohibited.


> **Mandatory confirmation gate**

> Before running any command that probes, exploits, changes, persists on, extracts data from, or attempts credential access against a target:

> 1. Ask the user to state the exact target URL, IP, account, or resource.

> 2. Ask the user to confirm written authorization and the permitted scope.

> 3. Show the exact command(s) and explain their expected effect.

> 4. Wait for explicit confirmation in the current conversation.

>

> Without that confirmation, remain read-only and provide defensive guidance only. Prefer a sandbox, disposable VM, or controlled lab.


# Offensive OSINT — External Red-Team Arsenal


> **v3.0** — Refactored 2026-05-02 from a 4,168-line monolith into a lean SKILL.md (~400 lines) plus 15 modular reference files in `references/`. Detail content loads on demand — Claude reads only the reference files relevant to the current task.



0. When to use / When NOT


**Use this skill when:**

- You need concrete probe paths, wordlists, regexes, payloads, scoring rules, or tool URLs.

- You're executing reconnaissance and need the actual technical reference (vs. methodology).

- You're building a recon automation and need specific lists to seed it.


**Do NOT use this skill when:**

- The user is asking for active exploitation, post-exploitation, or anything past reconnaissance.

- The user is asking for defensive / blue-team detections.

- The target's authorization isn't established — see §1.


---


1. Authorization & Legal Posture


For assets the operator owns or has written authorization to assess. Soft scope check before acting against an unverified third-party target — see methodology skill §1 for the full posture.


---


2. Confidence Levels


- **TENTATIVE** — plausible based on indirect evidence (snippet-only dork match, single-source asset, inferred email pattern).

- **FIRM** — directly observed (subdomain resolves, HEAD-confirmed bucket exists, banner returned).

- **CONFIRMED** — verified via independent corroboration OR direct verification (live PMAK validation, multiple sources agree, listable bucket with object retrieval).


---


3. Output Format Conventions


Findings should carry: `id`, `module`, `asset_key`, `category`, `severity` (info/low/medium/high/critical), `confidence`, `title`, `description`, `evidence` (url + UTC timestamp + sha256 + raw ≤ 2 KiB), `references`, `remediation`. UTC timestamps everywhere.


---


4. Source Hygiene & Citations


URL + UTC timestamp + SHA-256 + tool version + run_id, every artifact. PNG screenshots, JSONL run logs, raw HTTP captures capped at 2 KiB body.


---


5. Do NOT


- Don't paste creds/PII/session tokens into cloud LLMs.

- Don't run destructive probes outside DEEP/`--aggressive`.

- Don't use validated credentials for anything except read-only liveness check.

- Don't single-source attribute.

- Don't assume vendor labels are ground truth.


---


6. General OSINT (curated tool refs)


- [OSINT Bookmarks](https://tools.myosint.training/) — comprehensive bookmarks.

- [OSINT Framework](https://osintframework.com/) — tool/resource directory.

- [IntelTechniques Tools](https://inteltechniques.com/tools/) — investigative suite.

- [Bellingcat Toolkit](https://www.bellingcat.com/resources/2024/09/24/bellingcat-online-investigations-toolkit/) — investigative journalism.

- [CyberSudo OSINT Toolkit](https://docs.google.com/spreadsheets/d/1EC0sKA_W9znzsxUt0wye9UYtyATXw5m8) — OSINT websites list.

- [Google Dorks](https://dorksearch.com/) — efficient Google searching.

- [Distributed Denial of Secrets](https://ddosecrets.com/) — leaked datasets.

- [Country-Specific Resources](https://digitaldigging.org/osint/) — country-targeted OSINT.



---


How to use this skill


This skill is a **lea

🎯 Best For

  • Claude users
  • Software engineers
  • Development teams
  • Tech leads

💡 Use Cases

  • Code quality improvement
  • Best practice enforcement

📖 How to Use This Skill

  1. 1

    Install the Skill

    Copy the install command from the Terminal tab and run it. The SKILL.md file downloads to your local skills directory.

  2. 2

    Load into Your AI Assistant

    Open Claude and reference the skill. Paste the SKILL.md content or use the system prompt tab.

  3. 3

    Apply offensive-osint to Your Work

    Open your project in the AI assistant and ask it to apply the skill. Start with a small module to verify the output quality.

  4. 4

    Review and Refine

    Review AI suggestions before committing. Run tests, check for regressions, and iterate on the skill output.

❓ Frequently Asked Questions

Is offensive-osint compatible with Cursor and VS Code?

Yes — this skill works with any AI coding assistant including Cursor, VS Code with Copilot, and JetBrains IDEs.

Do I need specific dependencies for offensive-osint?

Check the install command and Works With section. Most code skills only require the AI assistant and your codebase.

How do I install offensive-osint?

Copy the install command from the Terminal tab and run it. The skill downloads to ./skills/offensive-osint/SKILL.md, ready to use.

Can I customize this skill for my team?

Absolutely. Edit the SKILL.md file to add team-specific instructions, examples, or workflows.

⚠️ Common Mistakes to Avoid

Skipping validation

Always test AI-generated code changes, even for simple refactors.

Missing dependency updates

Check if the skill requires updated dependencies or new packages.

🔗 Related Skills