Aperture - OSINT Workbench Firefox

Aperture - OSINT Workbench

Local-first OSINT workbench: IoC detect, playbooks, cases, graph and offline packs. No API keys by default.

Features & Capabilities

Local-first investigation companion for SOC, DFIR, and CTI analysts.

Pivot on indicators across public OSINT tools, keep cases and history on-device, and run playbooks without accounts, API keys, or telemetry — unless you explicitly enable optional Labs features.

  • Popup launcher — paste an indicator, classify locally, run quick tools or playbooks
  • Dashboard workbench — triage inbox, bulk extract, cases, playbooks, relationship graph, offline packs, Labs
  • On-page detect (opt-in) — highlight IoCs on any page; click for a pivot card with notes, tags, clipboard packs, and related indicators
  • Playbooks — ordered multi-tool workflows with optional delay, concurrency, and skip-private-IP
  • Cases — group indicators, verdicts, tags, notes, timeline, session capture, JSON/MD/CSV export
  • Right-click search — selection → playbooks and OSINT sites
  • Keyboard — command palette (⌘/Ctrl+K) plus Ctrl+Shift+K / Ctrl+Shift+O

IPs, domains, URLs, emails, hashes, CVEs, BTC, ASNs — plus ETH, ATT&CK IDs, paths, onion addresses, Telegram/Discord links, and more.

VirusTotal, AbuseIPDB, URLScan, Shodan, Censys, AlienVault OTX, ThreatCrowd, IBM X-Force, MalwareBazaar, GreyNoise, Spur, Have I Been Pwned, crt.sh, RDAP, Wayback Machine, URLhaus, ThreatFox, NVD, BGP HE, MITRE ATT&CK.

  • Parsing and enrichment run on-device
  • Network use is only when you open OSINT tabs (or enable opt-in Labs adapters/LLM)
  • On-page highlights are off by default
  • No telemetry by default (Firefox data collection: none)
  • No API keys required for core use
  • Storage — local history, cases, settings
  • Context menus — right-click search
  • Tabs / activeTab — open OSINT lookups you choose
  • Host access — optional on-page IoC highlights and selection handling
Formerly SOC OSINT Search.

User Growth & Download Statistics

Manifest V3 Add-on
By:
Peter Stollery
Daily users:
49 2
Version:
4.0.3 Last updated: 2026-07-23
Version code:
6371256
Creation date:
2025-03-26
Risk:
High risk impact Moderate risk likelihood
Permissions:
Host permissions:
  • <all_urls>
Content scripts matches:
  • <all_urls>
Size:
265.59KB
URLs:
Website
Full description:
See detailed description
Source:
Firefox Add-ons Store
Data ingested on:
2026-08-02
Compare stats and ranking:

Contact the developer

Chrome-Stats does not own this Firefox add-on. Please use these information below to contact the Firefox add-on developer.
Developed by:
Peter Stollery
Firefox Add-ons Store
https://addons.mozilla.org/firefox/addon/soc-osint-extension/
Website:
https://github.com/petstuk/Aperture-OSINT-Workbench

Permission Change History

2026-07-21: Version 2.2.0 → 3.0.0
Add Host permissions: <all_urls>
Remove Permissions: <all_urls>

Is Aperture - OSINT Workbench Safe?

Risk impact
Risk impact measures the level of extra permissions an extension has access to. A low risk impact extension cannot do much harms, whereas a high risk impact extension can do a lot of damage like stealing your password, bypassing your security settings, and accessing your personal data. High risk impact extensions are not necessarily malicious. However, if they do turn malicious, they can be very harmful.

Aperture - OSINT Workbench requires some sensitive permissions that could impact your browser and data security. Exercise caution before installing.

Risk impact analysis details
  • Critical Grants access to browser tabs, which can be used to track user browsing habits and history, presenting a privacy concern.
  • Critical ****** ****** ** *** ********* ****** * *********** ******** **** ** ** *** ******* *** ****** **** **** *** ******* *****
  • High ******* ******* **** *** ****** ***** *** ***** ** ******* **** ********* ********* ** * *********** *****
  • Medium ****** ** ********* ****** ********* *** **** ****** **** **** ** ******* ** ********** **** ***********
Risk likelihood
Risk likelihood measures the probability that a Firefox add-on may turn malicious. This is determined by the publisher and the Firefox add-on reputation on Firefox Add-ons Store, the amount of time the Firefox add-on has been around, and other signals about the Firefox add-on. Our algorithms are not perfect, and are subject to change as we discover new ways to detect malicious extensions. We recommend that you always exercise caution when installing a Firefox add-on.

Aperture - OSINT Workbench is probably trust-worthy. Prefer other publishers if available. Exercise caution when installing this add-on.

Risk likelihood analysis details
  • High This extension was recently updated in the past month. New updates may not be stable or safe.
  • High **** ********* *** *** **** ****** ********* ********** *** *** ** ****** ** *****
  • Low **** ********* *** ***** **** **** * ****** **** ***** ********** *** **** ****** ** ** ****** *** *****
Extension Guard
Extension Guard

Discover every extension in use, analyze risks, and enforce blocking policies with Extension Guard

Secure Your Browser
Upgrade to see full risk analysis details

Best Aperture - OSINT Workbench Alternatives

Here are some Firefox add-ons that are similar to Aperture - OSINT Workbench: