Type a name, email, phone or username β one report of everything public, each hit stamped with where it came from.
Launch Command One β β free Β· 100 credits a day Β· public sources only Β· no card
The whole trick, in one line: one search box replaces the ~20 terminal windows OSINT normally takes. Same free tools β Sherlock Β· Holehe Β· GHunt Β· SpiderFoot β just pre-wired, correlated and $0. You pay nothing to skip the install.
Never done this before? Three steps.
β type one thing you already know
β‘ it checks 150+ public sources for you
β’ you get one PDF β every line shows its source
| You typeβ¦ | β¦you get back |
|---|---|
| every site it is registered on | |
| where it is signed up Β· disposable? Β· Gravatar | |
| country / carrier + apps that use it | |
| ranked guesses at their handles | |
| its subdomains + public records |
Best first scan β run it on yourself. See what a stranger can pull together about you in 2 minutes, then go clean it up.
Already run Sherlock & Holehe?
No black box β here is the tool sitting under each module:
| Module | What it runs |
|---|---|
| Username sweep | Sherlock Β· Maigret Β· Snoop Β· Blackbird Β· socialscan Β· WhatsMyName |
| Email recon | Holehe + MX / disposable / Gravatar |
| Phone intel | Ignorant + E.164 / carrier hints |
| Domain & infra | theHarvester Β· Sublist3r + DNS / CT-logs |
| Identity expansion | GHunt (Google artefacts) + ranked handles |
| Correlation | SpiderFoot β merge Β· dedupe Β· confidence-score |
β³ Modules that agree merge and lift confidence; lone hits stay flagged as leads. Export CSV or a branded PDF. A read-only OAuth agent endpoint lets your own AI tooling query your cases.
π§° Rather self-host? The 12 free repos it fuses
All open-source, free to run yourself, no Google sign-in needed:
- Sherlock β username β 400+ sites
- Maigret β username β 3000+ sites + report
- Snoop β username OSINT (RU / EN)
- Blackbird β fast username + email search
- socialscan β email / username availability
- WhatsMyName β community username-enum dataset
- Holehe β email β the accounts it registered
- Ignorant β phone β the accounts it registered
- theHarvester β domain emails / subdomains / hosts
- Sublist3r β subdomain enumeration
- GHunt β Google account OSINT
- SpiderFoot β 200+ modules + correlation engine
β³ Command One just keeps them installed, updated, correlated and reportable in one place β the raw power is free either way.
π‘οΈ What it will NOT do
Public sources only β nothing behind a login or paywall
No breach dumps Β· no paid data brokers Β· no login bypass
Google sign-in only makes your account β it never reads your Gmail, Drive or contacts
Every scan is logged to an audit trail on your account
Results are leads, not proof β verify before you rely on them
Harassment, stalking or unlawful profiling = account terminated
π― Who this is for
- Due diligence β check a counterparty / contractor / hire is who they claim before you sign
- Fraud, trust & safety β link throwaway accounts, spot recycled handles, map scam infrastructure
- Journalism & research β trace a public figureβs footprint with a citable source per claim
- Personal exposure audit β run yourself, see what is exposed, clean it up
One box, seventeen tools, every answer with a receipt β the twenty terminals were never the point.
UPDATE:
Whatβs New
Command One has received a significant update focused on making investigations faster, more transparent and easier to verify.
π New Features
Multi-Source Correlation
Findings from multiple independent modules are automatically merged into unified entities with confidence scoring, making it easier to distinguish corroborated evidence from single-source leads.
Agent Integration
A new OAuth-secured read-only endpoint allows your own AI tooling to search cases and retrieve findings directly from your Command One account.
Improved Case Reports
Reports now include richer investigation summaries, structured findings, scan logs and supporting evidence, with both PDF and CSV export available.
Expanded Public Source Coverage
Username investigations now probe more than 150 public platforms, combining native modules with trusted open-source tools.
β‘ Improvements
- Improved investigation workflow
- Faster module execution
- Better evidence correlation
- Improved confidence scoring
- Expanded identity expansion
- Cleaner investigation console
- Improved report generation
- Better filtering and grouping
- Enhanced audit trail
π οΈ New Modules & Intelligence
Command One now integrates additional intelligence capabilities including:
- Sherlock
- Maigret
- Snoop
- Blackbird
- socialscan
- WhatsMyName
- Holehe
- GHunt
- SpiderFoot
- theHarvester
- Sublist3r
- Ignorant
All findings are normalised into the same unified investigation format.
π Responsible by Design
Command One continues to operate using publicly accessible information only.
Public sources
Logged investigations
Source attribution
Evidence trail
Confidence scoring
Every result remains traceable back to its originating source for independent verification.
!