{"id":4576,"external_id":"plugins_6a972043ba948191848287ee55e51b98","name":"chatgpt-osint","display_name":"Authorised OSINT Toolkit","developer":"Robert Lane","category":"Security","listing_language":"en","listing_language_details":{"method":"cld-0.13.0/listing-v1","reliable":true,"detected_at":"2026-10-01T13:22:04Z","input_sha256":"211ad610fcef316d1aa0911cdbb48756d154e939c839bfc9d9ce473528eed963","source_fields":["release.description","release.interface.short_description","release.interface.long_description"]},"version":"1.1.0","skill_count":9,"first_seen_at":"2026-09-30T22:02:35.000Z","last_seen_at":"2026-10-02T12:00:02.247Z","last_changed_at":"2026-09-30T22:02:35.000Z","install_count":null,"research_summary":null,"research_reviewed_at":null,"metadata":{"id":"plugins_6a972043ba948191848287ee55e51b98","name":"chatgpt-osint","scope":"GLOBAL","status":"ENABLED","release":{"id":"pluginrel_d7b9e49ef61c819189004a90c21fe809","skills":[{"name":"cloud-saas-exposure","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Cloud and SaaS Exposure","default_prompt":"Use $cloud-saas-exposure to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Assess attributable cloud and SaaS exposure"},"description":"Assess attributable cloud storage, SaaS, package-registry and cloud-native exposure using passive or read-only methods. Use only for owned or explicitly authorised targets; exclude credential submission, exploitation and control-plane access.","plugin_release_skill_id":"pluginrsk_6a972d8f2d9081918c98368aa398e19d"},{"name":"continuous-exposure-monitoring","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Continuous Exposure Monitoring","default_prompt":"Use $continuous-exposure-monitoring to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Design repeatable exposure monitoring programmes"},"description":"Design authorised re-scan, diff, finding-lifecycle and public threat-intelligence monitoring workflows. Use for exposure monitoring programmes and alert tuning; do not schedule or contact third-party targets without explicit authority.","plugin_release_skill_id":"pluginrsk_6a972d9153c481919d35aa71e9904f55"},{"name":"defensive-exposure-analysis","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Defensive Exposure Analysis","default_prompt":"Use $defensive-exposure-analysis to assess these supplied findings safely.","icon_large_url":null,"icon_small_url":null,"short_description":"Analyse supplied exposure evidence"},"description":"Analyse supplied security findings and lawfully accessible public organisational information to identify defensive exposure and remediation priorities. Use for evidence synthesis and assurance; not for scanning, account discovery, credential activity, exploitation or surveillance.","plugin_release_skill_id":"pluginrsk_6a972d8f2c0c819188232ffbe3540ff9"},{"name":"defensive-osint-planning","interface":{"brand_color":"#17324D","iconography":"search","display_name":"Defensive OSINT Planning","default_prompt":"Use $defensive-osint-planning to plan a lawful passive security review.","icon_large_url":null,"icon_small_url":null,"short_description":"Plan lawful public-source reviews"},"description":"Plan lawful defensive public-source research and exposure reviews using user-supplied information or permitted public sources. Use for scope, collection planning, evidence standards and deliverables; not for scanning, user enumeration, credential processing, exploitation or surveillance.","plugin_release_skill_id":"pluginrsk_6a972d9056a081919b44fcc918316814"},{"name":"email-domain-security","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Email Domain Security","default_prompt":"Use $email-domain-security to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Assess email spoofing and SPF risks"},"description":"Analyse published DNS records to reach a defensible email-spoofability and SPF supply-chain verdict. Use for passive email-domain security reviews; do not send test mail, enumerate recipients or submit credentials.","plugin_release_skill_id":"pluginrsk_6a972d8fc80c81918510ec50bdbd32ea"},{"name":"exposure-risk-quantification","interface":{"brand_color":"#17324D","iconography":"chart","display_name":"Exposure Risk Quantification","default_prompt":"Use $exposure-risk-quantification to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Quantify exposure and communicate cyber risk"},"description":"Convert existing reconnaissance findings into transparent likelihood, impact, FAIR-style loss estimates, risk scores and executive reporting. Use for analysis and communication, not target collection or active testing.","plugin_release_skill_id":"pluginrsk_6a972d90b20481919da860b450110cdc"},{"name":"identity-security-review","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Identity Security Review","default_prompt":"Use $identity-security-review to review this identity design.","icon_large_url":null,"icon_small_url":null,"short_description":"Review supplied identity architecture"},"description":"Review user-supplied identity architecture, federation design and control documentation for defensive security gaps. Use for assurance and remediation planning; not for tenant discovery, account enumeration, login testing or credential activity.","plugin_release_skill_id":"pluginrsk_6a972d8f336881918839005bc4429a51"},{"name":"org-attack-surface","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"Organisation Attack Surface","default_prompt":"Use $org-attack-surface to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Map attributable organisational internet assets"},"description":"Map an organisation from verified legal entities to attributable domains, ASNs, netblocks and public services. Use for authorised corporate-footprint and attack-surface discovery while separating candidates from proven ownership and scan scope.","plugin_release_skill_id":"pluginrsk_6a972d9127208191b4a37de62c112bdd"},{"name":"osint-autopilot","interface":{"brand_color":"#17324D","iconography":"radar","display_name":"OSINT Autopilot","default_prompt":"Use $osint-autopilot to help with an explicitly authorised defensive OSINT task.","icon_large_url":null,"icon_small_url":null,"short_description":"Run gated authorised OSINT workflows"},"description":"Run the packaged deterministic external OSINT workflow against an owned or explicitly authorised domain, producing evidence and a workbook. Require scope confirmation before execution, keep discovered sibling assets out of scope, and never auto-run active exploitation.","plugin_release_skill_id":"pluginrsk_6a972d904b888191822f0c82732c10ca"}],"app_ids":[],"version":"1.1.0","keywords":["defensive-osint","attack-surface","exposure-analysis","security","risk"],"interface":{"category":"Security","logo_url":"https://files.openai.com/content?id=file_00000000c47c81f4bd6f1bdeda5908c4","brand_color":"#17324D","website_url":null,"capabilities":["Plan lawful defensive OSINT reviews","Assess organisational attack surfaces","Review email and cloud exposure","Analyse identity security architecture","Design exposure monitoring processes","Quantify and prioritise security risk","Produce evidence-led security reports"],"logo_url_dark":null,"default_prompt":"Plan a lawful defensive OSINT review.","developer_name":"Robert Lane","default_prompts":["Plan a lawful defensive OSINT review.","Assess these supplied exposure findings and prioritise remediation.","Turn these confirmed findings into an executive security report."],"screenshot_urls":[],"long_description":"A nine-skill toolkit for authorised organisational OSINT, attack-surface analysis, email and cloud exposure review, identity-security assurance, monitoring design, risk quantification and evidence-led reporting. The replacement planning, identity and exposure-analysis skills exclude credentials, account enumeration, authentication testing, exploitation, access-control bypass and surveillance.","composer_icon_url":"https://files.openai.com/content?id=file_0000000054c481f4b59b91f5ae05ab2f","short_description":"Authorised exposure analysis","plugin_category_id":"security","privacy_policy_url":null,"terms_of_service_url":null,"composer_icon_dark_url":null},"description":"Nine skills for authorised organisational OSINT, exposure analysis, monitoring and security risk reporting.","app_manifest":null,"display_name":"Authorised OSINT Toolkit","app_templates":[],"onboarding_skill_name":null,"requires_local_executor":false},"created_at":"2026-09-01T19:32:22.358505Z","is_template":false,"connector_id":null,"discoverability":"UNLISTED","canonical_app_id":null},"research":null,"package_metadata":{"name":"chatgpt-osint","author":{"name":"Robert Lane"},"license":"MIT AND CC-BY-4.0","sources":[{"path":".codex-plugin/plugin.json","sha256":"1ef4a5d38d5ff83e37f18278b11647779cd7498f924abe10cf6af0b4d1f28f54"}],"version":"1.1.0","homepage":"https://github.com/elementalsouls/Claude-OSINT","keywords":["defensive-osint","attack-surface","exposure-analysis","security","risk"],"repository":"https://github.com/elementalsouls/Claude-OSINT","artifact_id":11425,"observed_at":"2026-10-02T00:32:40Z","capabilities":["Plan lawful defensive OSINT reviews","Assess organisational attack surfaces","Review email and cloud exposure","Analyse identity security architecture","Design exposure monitoring processes","Quantify and prioritise security risk","Produce evidence-led security reports"],"field_sources":{"name":0,"author":0,"license":0,"version":0,"homepage":0,"keywords":0,"repository":0,"capabilities":0},"extraction_version":1,"conflicts_or_errors":[]}}