| name | osint-person |
| description | Investigate a person via OSINT — username/email enumeration with Maigret/Sherlock/Holehe, infrastructure analysis, threat intel correlation, and digital footprint mapping. |
Conduct an OSINT investigation on the specified person.
Usage: /osint-person <target>
Where <target> is a username, email, or identifier — e.g. johndoe, suspect@example.com, @username.
If no target is provided, ask the user for the username or email.
Instructions
- Load the investigation template: call
get_template(name="osint-person", target="$ARGUMENTS")
- Follow all 5 phases: Username/Email Enumeration, Domain/Infrastructure, Threat Intelligence, Correlation, Reporting
- Use these MCP servers: osint (Maigret, Sherlock, Holehe, theHarvester), threat-intel (AbuseIPDB, Shodan, URLScan), filesystem
- Cross-reference usernames across platforms
- Map the complete digital footprint
- Generate report with platform presence map and timeline