Skip to main content

Map the complete cloud footprint of any domain — provider fingerprinting, subdomain discovery, dangling CNAME detection, tech stack analysis, and visual infrastructure diagrams.

Project description

🕵️‍♂️ InfraDetective

InfraDetective is a powerful infrastructure intelligence tool designed to map the cloud footprint, security posture, and tech stack of any domain or IP. It combines DNS analysis, fingerprinting, OSINT, and security auditing into a single, high-speed terminal dashboard.

PyPI version License: MIT


🚀 Key Features

🔍 Infrastructure Mapping

  • Provider Fingerprinting: Detect hosting providers (AWS, Google, Hostinger, etc.) and CDN presence (Cloudflare, Akamai).
  • IP-to-ASN Matching: Fast lookup of network ownership and geography.
  • Port Scanner: Detect exposed services (SSH, Redis, MySQL, Postgres) with banner grabbing.

🛡️ Security & OSINT

  • Dangling CNAME Detection: Find potential Subdomain Takeover vulnerabilities.
  • Phishing & Typosquatting: Hunt for lookalike domains used for brand attacks.
  • Code Footprint (OSINT): Find GitHub repositories and leaked dev files (/.env, composer.json).

⚡ Intelligence & Scoring

  • Modernity Score: Evaluates tech stack, security headers, and protocol versions.
  • GreenStack Score: Estimates carbon intensity based on hosting provider.
  • AI-Ready Audit: Checks if the site is optimized for AI agents and LLM scraping.

📦 Installation

pip install infradetective

Note: For the caching layer, a running Redis instance is recommended but not required.


🛠 Usage

1. Deep Domain Scan

Run a full investigation on any domain:

infradetective scan example.com

2. Hunting for Phishing Clones

Find lookalike domains used for phishing:

infradetective phish example.com

3. Code Footprint Analysis

Find source code links and exposed metadata:

infradetective osint example.com

4. Visual Infrastructure Map

Generate a Mermaid.js diagram of the infrastructure:

infradetective scan example.com --output mermaid

🏗 Architecture

InfraDetective is built with a modular "Detective" architecture:

  • core/: Individual intelligence modules (DNS, Fingerprint, OSINT, etc.)
  • output/: Presentation layers (Rich Terminal, Mermaid.js, JSON)
  • cache/: Graceful Redis caching layer

📜 License

Distributed under the MIT License. See LICENSE for more information.


Built with ❤️ for the DevOps & Security Community.

🔗 Source Code: https://github.com/Suriyakumarvijayanayagam/Infradetective-v1.0.0

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

infradetective-0.1.1.tar.gz (30.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

infradetective-0.1.1-py3-none-any.whl (34.5 kB view details)

Uploaded Python 3

File details

Details for the file infradetective-0.1.1.tar.gz.

File metadata

  • Download URL: infradetective-0.1.1.tar.gz
  • Upload date:
  • Size: 30.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.1.tar.gz
Algorithm Hash digest
SHA256 f9c0938db061139109f80ea6edd07fffef172d198c5f93664a1e95d738936d4d
MD5 f2e6c0d687cd98051493f39ffa40a49d
BLAKE2b-256 2e0a2ab157bd51b7dbdcc75106da68c60533e7f22bcf8c5f822dd07f07904222

See more details on using hashes here.

File details

Details for the file infradetective-0.1.1-py3-none-any.whl.

File metadata

  • Download URL: infradetective-0.1.1-py3-none-any.whl
  • Upload date:
  • Size: 34.5 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 8865e96e6435249aa3ec5fb0b15e471f7eb87c31aa87cb99ac2a82e9b1cd805d
MD5 55aafa1c1cacdc0c6533d1e65722bfce
BLAKE2b-256 ad38b15a882d57739475cd6b5d02e62fc3026bd05223aeefd60be6c00c9aac04

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page