phonsint
High-Throughput Silent Phone Number OSINT & Identity Footprinting Suite
Uncover account registrations, masked emails, display names, and profile photos across major platforms—without ever dispatching an SMS or alerting the target.
⚡ What is phonsint?
Most phone number tools stop at basic format parsing or risk blowing an investigation by triggering loud 2FA/SMS verification codes to the target's mobile device.
phonsint is engineered for silent, high-fidelity reconnaissance. It interrogates pre-authentication discovery endpoints, recovery validation flows, and cryptographic challenge APIs (such as Meta LOX proof-of-work) to determine account existence and extract rich profile metadata—completely silently.
✨ Key Capabilities
- Guaranteed Silent Operation: Exploits unauthenticated query endpoints and pre-dispatch recovery flows that never send SMS verification codes or push notifications to the target.
- Deep Identity Enrichment:
- 📧 Masked Email Addresses: Surfaces linked emails (e.g.
j******e@gmail.com) associated with the phone number. - 👤 Full Display Names: Pulls account owner names from public platform recovery APIs.
- 🖼️ High-Resolution Avatars: Extracts direct CDN profile photo URLs without logging in.
- 🏢 Tenant & Region Routing: Identifies regional datacenters (e.g., Zoho US, EU, IN, CN, JP).
- 📧 Masked Email Addresses: Surfaces linked emails (e.g.
- High-Throughput Concurrency: Built with Python
asyncioandcurl_cffifor browser TLS fingerprint impersonation (bypasses Cloudflare, Akamai, and Shape Security without heavy headless browsers). - Zero False Positives: Uses strict, dual-state validation markers (matching the design philosophy of
user-scanner). - Multi-Format Reports: Automated structured exports to JSON and CSV for immediate ingestion into investigation pipelines.
🖥️ Live Terminal Preview
Checking phone: +14155552671
== SOCIAL SITES ==
[✔] Facebook (+14155552671) [Registered]
├── name: John Doe
├── masked_email: j******e@gmail.com
└── avatar: https://scontent.xx.fbcdn.net/v/t39.30808-1/s200x200/412...
[✔] Instagram (+14155552671) [Registered]
└── contact_point: Phone Number Verified
== AUTH SITES ==
[✔] Microsoft (+14155552671) [Registered]
└── auth_type: Live ID / Account Exists
== SHOPPING SITES ==
[✔] Amazon (+14155552671) [Registered]
└── claim_endpoint: Active Sign-in Route
== SUMMARY ==
Total Sites Scanned: 5
Registered / Found: 4
🚀 Installation
🐍 Via Virtual Environment (Recommended)
# Clone the repository
git clone https://github.com/kaifcodec/phonsint.git
cd phonsint
# Create and activate virtual environment
python3 -m venv .venv
source .venv/bin/activate # On Windows: .venv\Scripts\Activate.ps1
# Install dependencies and package in editable mode
pip install -e .
📦 Direct Installation
pip install phonsint
💻 Usage Guide
1. Standard Target Scan (E.164 Format)
phonsint -p +14155552671
2. Scanning Local Format Numbers with Default Region
If a target number does not include an international + country prefix, specify the default ISO country code:
phonsint -p 07911123456 -r GB
phonsint -p 9876543210 -r IN
3. Targeted Category & Module Filtering
# Scan authentication providers only (e.g., Microsoft)
phonsint -p +14155552671 -c auth
# Scan specific platforms
phonsint -p +14155552671 -m facebook,instagram
# List all available modules and categories in a clean table
phonsint -l
4. Verbose Mode & Exporting Results
# Show all results including unregistered platforms and diagnostic reasons
phonsint -p +14155552671 --all -v
# Export results to JSON or CSV
phonsint -p +14155552671 -o report.json
phonsint -p +14155552671 -f csv -o report.csv
🛡️ OPSEC & Silent-by-Default Guarantee
In phone OSINT, accidental SMS verification codes sent to the target's phone are a critical operational failure. phonsint operates 100% silently by default, targeting pre-dispatch query endpoints, session credential checks, and unauthenticated recovery validations that do not dispatch SMS messages.
Any module that could potentially trigger a notification is registered under LOUD_MODULES in phonsint/core/helpers.py and will be automatically skipped unless the user explicitly passes --allow-loud.
🤝 Contributing
We welcome contributions! Adding a new platform check takes around ~30 lines of clean Python. Check out CONTRIBUTING.md for developer conventions, validator signatures, and instructions.
📜 License
Distributed under the MIT License.
Release files for phonsint 0.1.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| phonsint-0.1.0.tar.gz | 23.4 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| phonsint-0.1.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 51.1 kB
Release files / phonsint-0.1.0.tar.gz
| Download URL | phonsint-0.1.0.tar.gz |
|---|---|
| Size | 23.4 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
6f56c7caccb866f3d1486c0728fae0a26a9fd354fca47e6b8488145d3682fa05
|
|
BLAKE2b-256 checksum How to use checksums |
ef22fcdc0a795ddea1646bef8a68787fbb08942c6010a0056af22f0f4d8f7a52
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
python-requests/2.33.1
|
Release files / phonsint-0.1.0-py3-none-any.whl
| Download URL | phonsint-0.1.0-py3-none-any.whl |
|---|---|
| Size | 27.7 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
5941873070ce21fae6c36a1107d66a4145be32e6e5a3e6d1883e856f08d1a78c
|
|
BLAKE2b-256 checksum How to use checksums |
e4f8c8192e2b16e04a6c8abe46356ea76e9384f460e901c0c1114a95e6ec0e49
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
python-requests/2.33.1
|