Frequently Asked Questions
Platform
What query types does OsintGo support?
Eight query types: Email Lookup, Scam Detection, Domain Info, IP Lookup, Full Name search, Phone Lookup, Username, and Wallet / Crypto analysis. Each connects to purpose-built data sources and returns correlated, AI-enriched results in a single view.
What data sources does OsintGo use?
OsintGo aggregates data from breach databases, blockchain analytics providers, domain registries, identity graphs, IP intelligence feeds, threat intelligence feeds, and social platform search APIs. Results from multiple providers are deduplicated, correlated, and returned in a single view with AI analysis. We do not disclose the full list of providers to prevent circumvention.
What does the risk score mean?
The risk score is a 0–100 composite signal calculated from the data returned across all providers for a given query. A higher score indicates more evidence of risk based on factors such as breach exposure, fraud flags, infrastructure anomalies, blockchain risk, or scam indicators. It is a starting point for investigation, not a final verdict. The full breakdown behind the score is always included in the result.
What does the audit trail include?
Every query is logged with a unique query ID, timestamp, query type, the providers queried, response times, and status codes. This creates an immutable record of what was queried, when, and from which sources — suitable for inclusion in compliance reports, legal files, or internal investigation records.
Can I export or download results?
Yes. Results can be exported as structured JSON via the API, which makes it straightforward to pipe data into case management systems, compliance platforms, or internal tooling. Export options within the console are available from the query result view.
Is there a rate limit?
Rate limits apply per API key to maintain service stability. Limits are documented in the platform dashboard and scale with your usage tier. If you need higher throughput for batch investigations, contact us to discuss options.
Can I access OsintGo via API?
Yes. OsintGo is API-first. Every query type is available through the REST API using your API key. The platform console is a UI layer on top of the same API, so anything you can do in the console you can automate via the API.
How does pricing work?
OsintGo uses pay-per-query pricing. You top up your account balance and each query deducts a fixed amount depending on the query type. There is no monthly subscription or minimum commitment. Credits do not expire as long as your account remains active.
Account & Privacy
Do I need to verify my identity to sign up?
No. OsintGo does not require KYC or identity verification at any point. You can register and use the platform entirely anonymously. Providing an email address is optional and used only for API key recovery.
How do I recover or rotate my API key?
If you provided an email at registration, you can request a recovery link from the login page. If you registered without an email, the key cannot be recovered — this is a deliberate privacy trade-off. You can rotate your API key at any time from the dashboard; the old key is immediately invalidated.
Are my queries private?
Yes. Query parameters are stored in sanitised form for billing and abuse-prevention purposes only, and are automatically purged after 90 days. We use a truncated IP address (last octet removed) in logs. We do not sell, share, or monetise your query data.
Is OsintGo GDPR compliant?
Yes. OsintGo is designed around GDPR principles: data minimisation, purpose limitation, and a documented lawful basis for every data category we process. We do not require KYC, do not use tracking pixels or third-party analytics, and allow users to request deletion of any personal data we hold. See our Privacy Policy for full details including sub-processors and retention periods.
How do I delete my account or request my data?
Submit a Privacy Request via the support form. We will respond within 30 days and process access, export, correction, or deletion as requested. Payment records are subject to a 7-year legal retention obligation and cannot be deleted early.
Payments
What payment methods do you accept?
OsintGo accepts Bitcoin (BTC) and Monero (XMR) via a self-hosted BTCPay Server instance. We do not accept card payments and never handle card details. Crypto payments are processed on-chain with no third-party custodian involved.
What payment data do you store?
We retain only the transaction hash, invoice ID, amount, and currency. No wallet addresses that can be linked to you are kept after invoice settlement. Payment records are retained for 7 years as required by financial record-keeping law.
Do credits expire?
No. Credits do not expire as long as your account is active. There are no monthly minimums, rollover restrictions, or use-it-or-lose-it terms.
Can I get a refund on unused credits?
Refunds on unused credits are handled on a case-by-case basis. If you have a significant unused balance and want to close your account, submit a request via the support form. Refunds, where issued, are processed in the same cryptocurrency used for the original payment.
Use & Compliance
Is OsintGo suitable for AML and fraud investigations?
Yes. OsintGo is used by AML analysts, fraud teams, and financial crime investigators as part of their investigation workflow. The platform returns risk signals, entity connections, blockchain analytics, and breach data in a single view with a full audit trail — the kind of documented, reproducible output that regulatory reviews and internal compliance processes expect.
Can I use OsintGo for due diligence or background checks?
Yes, provided your use complies with applicable law in your jurisdiction. OsintGo is used by compliance teams, legal investigators, and due diligence professionals for lawful KYC verification, counterparty screening, and background research on publicly available data. See our Ethics Policy for the full list of permitted and prohibited uses.
Is OsintGo legal to use in my country?
OsintGo aggregates publicly accessible data and is designed for lawful professional use. Whether a specific use is permitted in your jurisdiction depends on local data protection, privacy, and surveillance laws. OsintGo does not provide legal advice. If you are unsure, consult qualified legal counsel before proceeding.
Can OsintGo be used for security research?
Yes. Security research — including vulnerability discovery, threat intelligence, and malware analysis — is an explicitly permitted use. Researchers use OsintGo to pivot on IPs, domains, email addresses, and crypto wallets as part of threat actor attribution and infrastructure mapping workflows.
What uses are strictly prohibited?
Stalking, doxxing, targeted harassment, social engineering attacks, unauthorised surveillance, profiling based on protected characteristics, sanctioned entity evasion, and any use involving the exploitation or location of minors. Violations result in immediate account termination and, where required by law, reporting to authorities. Full details in our Ethics Policy.
How do I report abuse by another user?
Submit an Ethics Concern via the support form. We review all reports and act promptly on confirmed violations, up to and including permanent account termination and reporting to law enforcement where required.
Still have questions?
Contact us via the support form and we will get back to you.