Intel

◈ IP INTEL geo, ASN, ISP, VPN flags — any target ◈ CARD CHECK luhn + BIN issuer intelligence ◈ MAG-LAB browser magstripe studio — ISO 7811 encode, read, batch issue (closed-loop only) ◈ MAIL FORENSICS true origin, relay delays, spoof flags, .eml import ◈ IMAGE FORENSICS EXIF, GPS, ELA, edit detection ◈ PHONE LOOKUP carrier, line type, region, timezone — any number ◈ USERNAME SLEUTH find one handle across 12+ platforms ◈ DOMAIN RECON RDAP whois, DNS, nameservers, subdomains

Operate

◈ SMS RENTAL 30-min numbers, refundable ◈ PROXY LAB residential egress, geo builder ◈ STEGO LAB hide words in pictures ◈ BURNER MAIL receive-only mailboxes, countdown

Hunt

◈ TRACK FILE opens report back: IP, city, ISP ◈ CANARY TRAPS links, pixels & honeytokens — instant alerts ◈ DEAD-DROP burn-after-read encrypted notes ◈ SCREENSHOT page capture or rendered-text fallback ◈ FRAUD-SCORE composite IP + email + BIN risk 0-100 ◈ FREE TOOLS DNS, headers, JWT, hasher ◈ PHONE LOOKUP osint: carrier + line type + region ◈ USERNAME SLEUTH osint: handle across platforms ◈ DOMAIN RECON osint: RDAP + DNS + subdomains ◈ DMS dead man switch: silence releases pre-written payload dead-drops ◈ HASH-CHAIN Tamper-evident chain-of-custody logs — edits break the chain at the exact link ◈ GHOST-TEXT hide secret messages in invisible characters inside innocent text ◈ CHAFF deterministic throwaway personas — same seed, same identity, zero storage ◈ LEAK-TRACER per-recipient invisible watermarks — leaks name the leaker ◈ TRACEOUT network traceroute with per-hop geo ◈ TRAP-CHAIN breadcrumb tripwires — each fired trap feeds them the next, maps their path

Account

◈ INBOX no-KYC messaging ◈ SIGN UP username + password, 10 seconds, no KYC ◈ API KEYS account, balance, metered keys ◈ PASS everything's free now — no pass needed ◈ AGENT PASSPORT machine-readable badge

DOMAIN RECON

Full passive recon on any domain: RDAP registration data (registrar, dates, status), live DNS records, and certificate-transparency subdomain discovery. Free, no keys.

API: GET /api/domain?d=example.com → JSON: rdap, events, entities, dns, subdomains.
HOW IT WORKS
  1. Type the bare domain — no scheme, no path.
  2. RDAP answers who runs it, when it was registered and when it expires.
  3. DNS shows A/AAAA/MX/NS/TXT/CNAME — where it lives and what mail it accepts.
  4. Certificate logs expose hostnames even when DNS tries to hide them — great for finding staging/hidden subdomains.
  5. All sources are public registries — passive, no packets touch the target.
JARGON — hover any chip:
RDAP CT log TXT
FOR AGENTS ?
GET /api/domain?d=example.com
curl "https://dark0rbits.thetempleofdoom.com/api/domain?d=example.com"RDAP registration, DNS records, CT-log subdomains. Passive OSINT, free. · spec: /openapi.json · catalog: /llms.txt
✦ REACH THE DEV
⚙