The OSINT Intelligence Directory takes security seriously. If you discover a security vulnerability, please report it responsibly.
- Email: Send details to security@osintelligence.net
- GitHub: Use the private vulnerability reporting feature
- Encrypted: Use our PGP key for sensitive reports
- Description of the vulnerability
- Steps to reproduce the issue
- Potential impact assessment
- Suggested fix (if available)
- 24 hours: Initial acknowledgment
- 72 hours: Preliminary assessment
- 7 days: Detailed response and timeline
- 30 days: Resolution target
All tools in this directory undergo security review:
- Source verification: Tools are checked for legitimacy
- Malware scanning: URLs are scanned for malicious content
- Privacy assessment: Data collection practices are evaluated
- Legal compliance: Tools are verified for legal use
When using OSINT tools from this directory:
- Verify tool authenticity before downloading or using
- Use VPNs or Tor when appropriate for privacy
- Respect terms of service of all platforms and tools
- Follow local laws and regulations
- Protect sensitive data and maintain operational security
- Use secure development practices
- Verify tool sources before submission
- Report suspicious or malicious tools
- Keep personal information private
- Use dedicated OSINT environments
- Implement proper access controls
- Regular security updates
- Monitor for data breaches
This security policy covers:
- The OSINT Directory website and infrastructure
- The GitHub repository and related services
- Community interactions and data handling
- Tool vetting and quality assurance processes
This policy does not cover:
- Third-party tools listed in the directory
- Individual tool security (responsibility of tool creators)
- User's local security configurations
- Legal issues related to tool usage
For security-related questions or concerns:
- Email: security@osintelligence.net
- GitHub: @intelseclab
Note: This directory is for educational and legitimate research purposes only. Users are responsible for ensuring their activities comply with applicable laws and regulations.