Skip to main content

Map the complete cloud footprint of any domain — provider fingerprinting, subdomain discovery, dangling CNAME detection, tech stack analysis, and visual infrastructure diagrams.

Project description

🕵️‍♂️ InfraDetective

InfraDetective is a powerful infrastructure intelligence tool designed to map the cloud footprint, security posture, and tech stack of any domain or IP. It combines DNS analysis, fingerprinting, OSINT, and security auditing into a single, high-speed terminal dashboard.

PyPI version License: MIT


🚀 Key Features

🔍 Infrastructure Mapping

  • Provider Fingerprinting: Detect hosting providers (AWS, Google, Hostinger, etc.) and CDN presence (Cloudflare, Akamai).
  • IP-to-ASN Matching: Fast lookup of network ownership and geography.
  • Port Scanner: Detect exposed services (SSH, Redis, MySQL, Postgres) with banner grabbing.

🛡️ Security & OSINT

  • Dangling CNAME Detection: Find potential Subdomain Takeover vulnerabilities.
  • Phishing & Typosquatting: Hunt for lookalike domains used for brand attacks.
  • Code Footprint (OSINT): Find GitHub repositories and leaked dev files (/.env, composer.json).

⚡ Intelligence & Scoring

  • Modernity Score: Evaluates tech stack, security headers, and protocol versions.
  • GreenStack Score: Estimates carbon intensity based on hosting provider.
  • AI-Ready Audit: Checks if the site is optimized for AI agents and LLM scraping.

📦 Installation

pip install infradetective

Note: For the caching layer, a running Redis instance is recommended but not required.


🛠 Usage

1. Deep Domain Scan

Run a full investigation on any domain:

infradetective scan example.com

2. Hunting for Phishing Clones

Find lookalike domains used for phishing:

infradetective phish example.com

3. Code Footprint Analysis

Find source code links and exposed metadata:

infradetective osint example.com

4. Visual Infrastructure Map

Generate a Mermaid.js diagram of the infrastructure:

infradetective scan example.com --output mermaid

🏗 Architecture

InfraDetective is built with a modular "Detective" architecture:

  • core/: Individual intelligence modules (DNS, Fingerprint, OSINT, etc.)
  • output/: Presentation layers (Rich Terminal, Mermaid.js, JSON)
  • cache/: Graceful Redis caching layer

📜 License

Distributed under the MIT License. See LICENSE for more information.


Built with ❤️ for the DevOps & Security Community.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

infradetective-0.1.0.tar.gz (29.9 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

infradetective-0.1.0-py3-none-any.whl (34.4 kB view details)

Uploaded Python 3

File details

Details for the file infradetective-0.1.0.tar.gz.

File metadata

  • Download URL: infradetective-0.1.0.tar.gz
  • Upload date:
  • Size: 29.9 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.0.tar.gz
Algorithm Hash digest
SHA256 1787e1dceb0a06a277a1d137aa5512ae436624b866e713630c198b5b9d1a641c
MD5 962dfcdeb8ce32701c1765e748210088
BLAKE2b-256 a7b4670057c9d9a9117abc3a26207d9441f342f668c84fae5979fc524781696e

See more details on using hashes here.

File details

Details for the file infradetective-0.1.0-py3-none-any.whl.

File metadata

  • Download URL: infradetective-0.1.0-py3-none-any.whl
  • Upload date:
  • Size: 34.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 139047d60081b8793687f2681a8284fd2a617bf844095f4ae7bd63e48313c493
MD5 f560c3e97e0a5c10d46d1de861f46781
BLAKE2b-256 6343ceb3c9c1cbd69eea0eebe15f6b49d938be69606cca4670bf8a76ea5d427d

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page