Skip to main content

Map the complete cloud footprint of any domain — provider fingerprinting, subdomain discovery, dangling CNAME detection, tech stack analysis, and visual infrastructure diagrams.

Project description

🕵️‍♂️ InfraDetective

InfraDetective is a powerful infrastructure intelligence tool designed to map the cloud footprint, security posture, and tech stack of any domain or IP. It combines DNS analysis, fingerprinting, OSINT, and security auditing into a single, high-speed terminal dashboard.

PyPI version License: MIT


🚀 Key Features

🔍 Infrastructure Mapping

  • Provider Fingerprinting: Detect hosting providers (AWS, Google, Hostinger, etc.) and CDN presence (Cloudflare, Akamai).
  • IP-to-ASN Matching: Fast lookup of network ownership and geography.
  • Port Scanner: Detect exposed services (SSH, Redis, MySQL, Postgres) with banner grabbing.

🛡️ Security & OSINT

  • Dangling CNAME Detection: Find potential Subdomain Takeover vulnerabilities.
  • Phishing & Typosquatting: Hunt for lookalike domains used for brand attacks.
  • Code Footprint (OSINT): Find GitHub repositories and leaked dev files (/.env, composer.json).

⚡ Intelligence & Scoring

  • Modernity Score: Evaluates tech stack, security headers, and protocol versions.
  • GreenStack Score: Estimates carbon intensity based on hosting provider.
  • AI-Ready Audit: Checks if the site is optimized for AI agents and LLM scraping.

📦 Installation

pip install infradetective

Note: For the caching layer, a running Redis instance is recommended but not required.


🛠 Usage

1. Deep Domain Scan

Run a full investigation on any domain:

infradetective scan example.com

2. Hunting for Phishing Clones

Find lookalike domains used for phishing:

infradetective phish example.com

3. Code Footprint Analysis

Find source code links and exposed metadata:

infradetective osint example.com

4. Visual Infrastructure Map

Generate a Mermaid.js diagram of the infrastructure:

infradetective scan example.com --output mermaid

🏗 Architecture

InfraDetective is built with a modular "Detective" architecture:

  • core/: Individual intelligence modules (DNS, Fingerprint, OSINT, etc.)
  • output/: Presentation layers (Rich Terminal, Mermaid.js, JSON)
  • cache/: Graceful Redis caching layer

📜 License

Distributed under the MIT License. See LICENSE for more information.


Built with ❤️ for the DevOps & Security Community.

🔗 Source Code: https://github.com/Suriyakumarvijayanayagam/Infradetective-v1.0.0

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

infradetective-0.1.3.tar.gz (31.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

infradetective-0.1.3-py3-none-any.whl (35.8 kB view details)

Uploaded Python 3

File details

Details for the file infradetective-0.1.3.tar.gz.

File metadata

  • Download URL: infradetective-0.1.3.tar.gz
  • Upload date:
  • Size: 31.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.3.tar.gz
Algorithm Hash digest
SHA256 44e9d8e551874f2aa26f79e020571fdc669bf79e564aa9c82e7da348b9cb3b08
MD5 7c09a34518cba72efa86d0814eefd448
BLAKE2b-256 17596723ac787a8dba1ddd5a08917ca2d60584cf98b01b6bf94fcf595dde8a37

See more details on using hashes here.

File details

Details for the file infradetective-0.1.3-py3-none-any.whl.

File metadata

  • Download URL: infradetective-0.1.3-py3-none-any.whl
  • Upload date:
  • Size: 35.8 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.3-py3-none-any.whl
Algorithm Hash digest
SHA256 207092ac3e1be96e1d2431d03bb635f4da0fec559cbcf5e7f56bba4b3936be94
MD5 946558229ba2ba9bf4ee55a4c5b85d22
BLAKE2b-256 67785b7cbe86ec8f80e2acd4632310daa8d6bf7d41c4086c6c98768a8e881e49

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page