Aperture — OSINT Workbench
Overview
Local-first OSINT workbench for SOC/DFIR: IoC pivot, playbooks, cases. No API keys by default. Formerly SOC OSINT Search.
Aperture is a local-first OSINT browser extension for SOC, DFIR, and threat intelligence analysts. Paste or select an indicator of compromise — such as an IP, domain, URL, email, hash, or CVE — and open public OSINT lookup sites in new tabs. Built as an investigation workbench: • Popup launcher — classify indicators locally, then run tools or playbooks • Dashboard — triage inbox, bulk extract, cases, playbooks, relationship graph, offline packs • Playbooks — multi-tool workflows in one click (shareable APX codes) • Cases — verdicts, tags, notes, timeline, and JSON / Markdown / CSV export • On-page detect (opt-in) — highlight IoCs and open a pivot card • Context menu and command palette for fast lookup Core use requires no API keys, no accounts, and no telemetry. Parsing stays on-device; network use is limited to the public OSINT tabs you choose to open. Optional Labs features (local LLM / API enrichment) are off by default. Formerly published as SOC OSINT Search.
0 out of 5No ratings
Details
- Version4.2.2
- UpdatedAugust 19, 2026
- Offered bypjstollery
- Size272KiB
- LanguagesEnglish (United Kingdom)
- Developer
Email
pjstollery@gmail.com - Non-traderThis developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.
Privacy
This developer declares that your data is
- Not being sold to third parties, outside of the approved use cases
- Not being used or transferred for purposes that are unrelated to the item's core functionality
- Not being used or transferred to determine creditworthiness or for lending purposes