Overview
Activity log
Watchlist
Targets on this list are polled continuously in the background, paced per-source so the tool never bursts past what a source tolerates. Paginated sources (IP.THC, Robtex, SecurityTrails) walk every page over time instead of stopping at a fixed cap -- a 100k-record target just takes a while to walk in full.
Domains found
Forms found
Structure only -- page URL, form method/action, and field names. No page content, names, or email addresses are extracted or stored.
Quick search
One-off lookup, not added to the watchlist and not persisted -- useful for a quick manual check. Paginated sources only walk up to 3 pages here; add the value to the Watchlist for a full, continuous walk of a large result set.
Sources & API keys
Manage every source from here -- toggle it on/off, set its self-imposed pacing (requests per hour), and paste an API key for the paid ones. Nothing here is ever sent anywhere except the source's own API.
API tokens
For scripts/automation hitting the API directly. Send as Authorization: Bearer <token>.
The raw token is only ever shown once, right after creation.
Users
Change my password
Request ledger
Every outbound source request is recorded with its cursor, page, result count, and outcome. Interrupted rows identify work that was in flight during a restart.
Audit log
Administrative changes to users, tokens, sources, targets, backups, and passwords.
API documentation
Use the API token scopes to keep automation least-privileged. The raw token is shown only once when created.
SQLite backups
Create consistent database backups before maintenance. Restoring a backup requires an app restart afterward.