awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
reconurge avatar

reconurge/flowsint

0
View on GitHub↗
6,979 stars·852 forks·TypeScript·Apache-2.0·20 viewsflowsint.io↗

Flowsint

Flowsint is an open-source intelligence framework and reconnaissance orchestrator used for cybersecurity investigations. It functions as a containerized tool runner and data mapper, automating the collection of intelligence from open-source providers and APIs to profile targets and map threat intelligence.

The platform distinguishes itself through a graph-based investigation interface, where processed raw intelligence is converted into nodes and edges to visualize relationships between entities. It allows for the creation of sequenced pipelines that chain data enrichment tools, enabling the output of one tool to serve as the input for the next.

The system covers a broad range of OSINT capabilities, including cryptocurrency wallet analysis, domain and IP metadata enrichment, social presence enumeration, and email exposure auditing. It supports custom data type definitions and schema-driven validation to extend its analytical capabilities.

The software provides options for local-first data storage to ensure privacy or centralized server deployment with frontend proxying for team access.

Features

  • OSINT Automation Frameworks - Provides a framework for automating intelligence gathering using a library of pre-built data enrichers.
  • Reconnaissance Workflow Orchestrators - Orchestrates the sequencing and execution of security discovery modules and external APIs into automated enrichment pipelines.
  • Sequential Step Orchestrators - Chains multiple data enrichment tools in a sequence where the output of one step serves as the input for the next.
  • OSINT Investigation Platforms - Offers a visual analysis platform for mapping entity relationships and automating intelligence gathering through graph workflows.
  • Visual Relation Mappers - Translates processed raw intelligence into visual graph patterns using nodes and edges for relationship analysis.
  • Graph Data Models - Implements storage architectures that represent intelligence entities as interconnected nodes and edges.
  • External Intelligence Integrators - Wraps external APIs and CLI utilities into a consistent interface for retrieving raw intelligence data.
  • Graph Node Visualizations - Converts processed intelligence results into network graph nodes and edges for visual analysis.
  • Intelligence Enrichment - Provides automated workflows to enrich target data using third-party reconnaissance and threat intelligence APIs.
  • Threat Entity Relationship Graphs - Visualizes relationships between security entities like domains and people using directed graphs.
  • Open Source Intelligence Tools - Provides a modular platform for defining custom data schemas, validators, and enrichers for cybersecurity investigations.
  • Passive Intelligence Gathering - Automates the collection and enrichment of data from open source providers and APIs to profile targets.
  • Reconnaissance Workflow Automation - Executes automated pipelines for reconnaissance tasks to gather intelligence on targeted entities.
  • System Capability Extensions - Integrates plugins that add new operational capabilities and analytical flows to the core system logic.
  • Intelligence Gathering Extensions - Integrates custom enrichers to add specialized data gathering logic for specific investigation needs.
  • Web Crawling and Scraping - Extracts emails, phone numbers, internal links, and tracking codes from web pages using automated crawling.
  • Local-First Storage - Prioritizes local data persistence to ensure user data sovereignty and privacy during investigations.
  • Security Tool Orchestrators - Integrates containerized utilities and external APIs into a unified interface to execute complex reconnaissance tasks.
  • Containerized CLI Tools - Executes security utilities within isolated containers using image management to ensure system safety.
  • Containerized Execution Environments - Runs security utilities in isolated containers to ensure portability and system safety.
  • Relationship Graph Visualizers - Maps relationships between entities using a high-performance graph interface for interactive data exploration.
  • Cyber Threat Intelligence Maps - Converts raw intelligence data into structured graph representations to track infrastructure and actor relationships.
  • Local Data Storage - Maintains all collected intelligence on the local device to preserve privacy and data sovereignty.
  • Social Presence Enumeration - Searches for specific usernames across multiple social platforms to identify linked accounts and metadata.
  • Tooling Plugin Systems - Provides an architecture for adding custom tools and commands via external module loading.

Star history

Star history chart for reconurge/flowsintStar history chart for reconurge/flowsint

How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does reconurge/flowsint do?

Flowsint is an open-source intelligence framework and reconnaissance orchestrator used for cybersecurity investigations. It functions as a containerized tool runner and data mapper, automating the collection of intelligence from open-source providers and APIs to profile targets and map threat intelligence.

What are the main features of reconurge/flowsint?

The main features of reconurge/flowsint are: OSINT Automation Frameworks, Reconnaissance Workflow Orchestrators, Sequential Step Orchestrators, OSINT Investigation Platforms, Visual Relation Mappers, Graph Data Models, External Intelligence Integrators, Graph Node Visualizations.

What are some open-source alternatives to reconurge/flowsint?

Open-source alternatives to reconurge/flowsint include: six2dez/reconftw — reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the… jasonxtn/argus — Argus is a modular network reconnaissance framework designed for gathering network intelligence, mapping… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… opencti-platform/opencti — OpenCTI is a cyber threat intelligence platform and knowledge base used to store, manage, and analyze technical… visjs/vis — vis is a JavaScript data visualization library used to render interactive networks, timelines, and graphs directly in… calesthio/crucix — Crucix is an open-source intelligence system comprising an OSINT aggregator, a geospatial intelligence dashboard, and…

Open-source alternatives to Flowsint

Similar open-source projects, ranked by how many features they share with Flowsint.
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226
  • jasonxtn/argusjasonxtn avatar

    jasonxtn/Argus

    3,254View on GitHub↗

    Argus is a modular network reconnaissance framework designed for gathering network intelligence, mapping infrastructure, and assessing security postures through automated discovery tasks. It operates as a containerized security toolset that allows for the consistent execution of specialized information-gathering modules across different operating systems. The system functions as an infrastructure audit tool and a web application security scanner, performing tasks such as DNS lookups, port scanning, and the inspection of HTTP headers to detect vulnerabilities. It also serves as a threat intell

    Pythoncms-detectiondirectory-finderdns-lookup
    View on GitHub↗3,254
  • jaykali/maskphishjaykali avatar

    jaykali/maskphish

    3,020View on GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    View on GitHub↗3,020
  • opencti-platform/openctiOpenCTI-Platform avatar

    OpenCTI-Platform/opencti

    8,812View on GitHub↗

    OpenCTI is a cyber threat intelligence platform and knowledge base used to store, manage, and analyze technical security data. It functions as a threat intelligence visualization tool and an enterprise security data orchestrator that maps relationships between threat actors, malware, and vulnerabilities. The platform utilizes the STIX and TAXII standards for data representation and exchange, allowing for the sharing and receiving of standardized intelligence bundles. It distinguishes itself by converting complex security information into visual relationship diagrams and geographic maps to ide

    TypeScriptcticybercybersecurity
    View on GitHub↗8,812
  • See all 30 alternatives to Flowsint→