spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

81 articles 19k View on GitHub ↗
81 articles
How to Troubleshoot Database Locking and Concurrency Issues in SpiderFoot

Troubleshoot SpiderFoot database locking and concurrency issues. Learn to enable WAL mode, use retry loops, adjust thread pools, and prevent external locks for smooth operation.

how-to-guide
Aug 15, 2026
How to Optimize SpiderFoot Scan Performance for Large Targets: Thread Pool Tuning and DNS Optimization Guide

Boost SpiderFoot scan performance on large targets by tuning thread pools and optimizing DNS. Eliminate bottlenecks and speed up your scans with this essential guide.

performance
Aug 15, 2026
How to Monitor SpiderFoot Scan Progress Programmatically via Its REST API

Monitor SpiderFoot scan progress programmatically using the REST API. Poll the scanopts endpoint for real-time status and metadata without database access.

how-to-guide
Aug 15, 2026
How to Customize User Agent Strings for HTTP Requests in SpiderFoot

Learn how to customize User Agent strings for SpiderFoot HTTP requests. Override default agents globally with static strings, local files, or remote URLs.

how-to-guide
Aug 15, 2026
How to Create and Test Custom Correlation Rules in SpiderFoot

Learn to create and test custom correlation rules in SpiderFoot. This guide explains YAML file creation, loading, execution, and verification for powerful threat intelligence.

how-to-guide
Aug 15, 2026
How the SpiderFoot Web UI Communicates with the Backend Scan Engine: Architecture Deep Dive

Discover how SpiderFoot's web UI interacts with its backend scan engine. Explore the architecture using CherryPy HTTP endpoints, multiprocessing, and SQLite for seamless coordination.

architecture
Aug 15, 2026
How to Handle API Key Errors and Authentication Failures in SpiderFoot Modules

Learn to handle API key errors and authentication failures in SpiderFoot modules. Discover the standardized error-handling pattern to prevent redundant requests and ensure smooth data collection.

how-to-guide
Aug 15, 2026
Best Practices for Scanning Sensitive Targets Responsively with SpiderFoot: A Complete Guide

Learn best practices for scanning sensitive targets with SpiderFoot. Get explicit permission, limit scope, use safe mode, enforce rate limits, and protect data.

best-practices
Aug 15, 2026
How SpiderFoot's Thread Pool Manages Parallel Module Execution

Discover how SpiderFoot's thread pool efficiently manages parallel module execution using worker threads, named queues, and configurable concurrency for faster threat intelligence gathering.

internals
Aug 15, 2026
How to Integrate External Tools Like Nmap, DNSTwist, and WhatWeb with SpiderFoot

Learn how to integrate external tools like Nmap, DNSTwist, and WhatWeb with SpiderFoot. Enhance your reconnaissance with SpiderFoot's powerful plugin architecture.

how-to-guide
Aug 15, 2026
How SpiderFoot Performs DNS Resolution and Zone Transfers: A Technical Deep Dive

Explore how SpiderFoot performs DNS resolution and zone transfers using dedicated plugins and core library methods. Uncover the technical details of its DNS operations.

deep-dive
Aug 15, 2026
How to Add Custom Threat Intelligence Feeds to SpiderFoot: A Complete Guide

Easily integrate custom threat intelligence feeds into SpiderFoot using the sfp_customfeed module. Import JSON indicator lists without code changes for enhanced security.

how-to-guide
Aug 15, 2026

Have a question about this repo?

These articles cover the highlights, but your codebase questions are specific. Give your agent direct access to the source. Share this with your agent to get started:

Share the following with your agent to get started:
curl -s "https://instagit.com/install.md"

Works with
Claude Codex Cursor VS Code OpenClaw Any MCP Client

Maintain an open-source project? Get it listed too →