Skip to content

ZeroTrace OSINT

Web & threat intelligence

The full reference for website and URL analysis, security posture, vulnerability lookups, and threat-database cross-referencing — tool by tool, with inputs, outputs, and data source.

Web & threat intelligence

This category looks at the web layer — a specific site or URL — and at whether an indicator you already have is known to be malicious.

ToolInputReturnsData source
URL AnalyzerA URLIts components broken out, plus heuristic flags (IP-literal host, suspicious encoding, and more)Local
Website AnalysisA URLOne-shot recon of the page: fetch, detected technology stack, and headline findingsLive
Web CrawlerA target site, crawl depth/limitsA bounded breadth-first crawl extracting links, emails, and phone numbers found across the pagesLive
Robots & SitemapA domainThe site's robots.txt and declared sitemaps (or the conventional locations)Live
Wayback LookupA URLHistorical Wayback Machine snapshots via the CDX indexNetwork
Wayback DiffA URL and two points in timeA line-based diff between two Wayback snapshots of the same pageNetwork
URL RedirectA URLThe redirect chain walked hop by hop, with status and Location at each stepLive
Cookie AuditorOne or more Set-Cookie header stringsA per-cookie flag audit (Secure, HttpOnly, SameSite, expiry, and more)Local
WebSocket InspectorA ws:// or wss:// URLThe result of an RFC 6455 opening handshake against itLive
Live tools reach the target

A tool marked Live in this category opens a real connection to the site you point it at — the site can see the request arrive. A tool marked Network instead queries a third-party service about the site, without the site itself being contacted. See Local, network, and live for the full model.

Comprehensive as of this build

This table covers the web and threat-intel tools currently in the library. Use the command palette to confirm you're seeing the current set.

Command Palette

Search for a command to run...