Skip to main content

Map the complete cloud footprint of any domain — provider fingerprinting, subdomain discovery, dangling CNAME detection, tech stack analysis, and visual infrastructure diagrams.

Project description

🕵️‍♂️ InfraDetective

InfraDetective is a powerful infrastructure intelligence tool designed to map the cloud footprint, security posture, and tech stack of any domain or IP. It combines DNS analysis, fingerprinting, OSINT, and security auditing into a single, high-speed terminal dashboard.

PyPI version License: MIT


🚀 Key Features

🔍 Infrastructure Mapping

  • Provider Fingerprinting: Detect hosting providers (AWS, Google, Hostinger, etc.) and CDN presence (Cloudflare, Akamai).
  • IP-to-ASN Matching: Fast lookup of network ownership and geography.
  • Port Scanner: Detect exposed services (SSH, Redis, MySQL, Postgres) with banner grabbing.

🛡️ Security & OSINT

  • Dangling CNAME Detection: Find potential Subdomain Takeover vulnerabilities.
  • Phishing & Typosquatting: Hunt for lookalike domains used for brand attacks.
  • Code Footprint (OSINT): Find GitHub repositories and leaked dev files (/.env, composer.json).

⚡ Intelligence & Scoring

  • Modernity Score: Evaluates tech stack, security headers, and protocol versions.
  • GreenStack Score: Estimates carbon intensity based on hosting provider.
  • AI-Ready Audit: Checks if the site is optimized for AI agents and LLM scraping.

📦 Installation

pip install infradetective

Note: For the caching layer, a running Redis instance is recommended but not required.


🛠 Usage

1. Deep Domain Scan

Run a full investigation on any domain:

infradetective scan example.com

2. Hunting for Phishing Clones

Find lookalike domains used for phishing:

infradetective phish example.com

3. Code Footprint Analysis

Find source code links and exposed metadata:

infradetective osint example.com

4. Visual Infrastructure Map

Generate a Mermaid.js diagram of the infrastructure:

infradetective scan example.com --output mermaid

🏗 Architecture

InfraDetective is built with a modular "Detective" architecture:

  • core/: Individual intelligence modules (DNS, Fingerprint, OSINT, etc.)
  • output/: Presentation layers (Rich Terminal, Mermaid.js, JSON)
  • cache/: Graceful Redis caching layer

📜 License

Distributed under the MIT License. See LICENSE for more information.


Built with ❤️ for the DevOps & Security Community.

🔗 Source Code: https://github.com/Suriyakumarvijayanayagam/Infradetective-v1.0.0

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

infradetective-0.1.4.tar.gz (31.8 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

infradetective-0.1.4-py3-none-any.whl (37.2 kB view details)

Uploaded Python 3

File details

Details for the file infradetective-0.1.4.tar.gz.

File metadata

  • Download URL: infradetective-0.1.4.tar.gz
  • Upload date:
  • Size: 31.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.4.tar.gz
Algorithm Hash digest
SHA256 96bac7fedabcdb2a5a840009e0de43a27e16ab8ac147300d2c0cba2a8d97f74d
MD5 23aa1741c5644f937dc4476455057d0e
BLAKE2b-256 f0f1f067b72d4409b645be0344897c2ec006bf3e90321160a38f5ff9768f9ce3

See more details on using hashes here.

File details

Details for the file infradetective-0.1.4-py3-none-any.whl.

File metadata

  • Download URL: infradetective-0.1.4-py3-none-any.whl
  • Upload date:
  • Size: 37.2 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.10

File hashes

Hashes for infradetective-0.1.4-py3-none-any.whl
Algorithm Hash digest
SHA256 931ce8862612ba71d968cb29876f5a13557083f719770a1b6ae3b384ceb358f9
MD5 7bcf226e96bc951cf6e6c126723c4172
BLAKE2b-256 6690b569dd2a5a789ce402db20e184871948b5822bfef55b61befac82c2a55bd

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page