OSINTYourself

← Learn

Getting started responsibly

Once you understand what OSINT is, how the main techniques work, and where the ethical and legal lines sit, the practical question is how to actually start learning it without causing harm along the way. These are the habits worth building from day one.

Start by profiling yourself

The best first exercise in OSINT is running it on the one person you have unambiguous consent to investigate: yourself. Try to reconstruct what a stranger could learn about you starting from just your name, or just your usual username, or just your email address. It teaches every core technique — pivoting, metadata, breach checks, infrastructure lookups if you run any of your own sites — with zero ethical ambiguity, and it directly answers a question worth knowing the answer to. This site's own how findable are you check is built as a structured way to start that exercise.

Use a separate research environment

Keep your learning and research activity separate from your everyday accounts and browser profile. A dedicated browser profile (or a separate browser entirely), a research email address that is not tied to your real identity, and awareness of what your own IP address and device fingerprint reveal are all standard practice. This is not about hiding wrongdoing — it is the same reason a journalist or researcher does not verify a source while logged into their personal social accounts: mixing the two creates noise in your results and can expose you to whoever you are researching.

Keep notes as you go

OSINT work compounds — a detail found early (a username variant, a reused photo, a linked domain) often becomes the pivot point for something found later. Keeping a simple, dated log of what you checked, what you found, and where it came from does two things: it makes your own learning process traceable, and if you ever do research with a legitimate purpose beyond yourself, it is the difference between a defensible process and an unaccountable one.

Respect each platform's terms of service

Every site and tool you use during OSINT research has its own terms of service, and many specifically restrict automated scraping, bulk lookups, or using the platform to build profiles of other users. Those terms are separate from the general legal questions covered in the ethics and the line you don't cross — a lookup can be legal and still violate the terms you agreed to when you created an account, which can get that account suspended or expose you to a breach-of-contract claim from the platform itself.

Know when to stop

There is no finish line to how much can be found about a person or organisation — every result can usually be pivoted into another search. Decide in advance what question you are actually trying to answer, and stop once you have answered it. If you notice the research drifting from that original question toward simply seeing how much more you can find about a specific person, that drift is itself the signal described in the ethics guide — it is the point where curiosity starts to look like the pattern that turns research into harassment.

Where to go from here

Once you have run the exercise on yourself, the tools directory catalogues the specific software behind each technique this section describes, tagged with cost, platform, and whether it is dual-use, so you can see what a given category of lookup actually looks like in practice.