OSINT Research: What Open Sources Really Reveal

OSINT stands for open source intelligence — the systematic evaluation of publicly available sources. No hacking, no bought databases, no grey area: the job is to connect what is already in the open and turn it into a picture that holds. In practice this work often decides whether an expensive field operation is needed at all.
Which sources are used
The toolbox is larger than most people assume. It includes commercial and company registers, the federal gazette with published annual accounts, insolvency notices, procurement records and trade data. Then come press and archive research, specialist databases, published court decisions, domain and website history, job advertisements, conference papers, patent filings, and both professional and personal social media profiles.
Images are sources too: metadata, backgrounds and reverse search frequently reveal place and period. And geodata — satellite and street imagery — shows what a business site actually looks like and whether the stated address is more than a mailbox.
How data becomes a result
Individual hits are worthless while they merely sit side by side. The real work lies in connecting them: who appears in several companies at once, which address recurs, when a firm was renamed, which period is missing from a CV, and whether a person’s own account matches what third parties have published about them.
Every finding is documented with its source and the date it was retrieved. That is what separates research from a pile of links: the report has to remain verifiable months later, when somebody else reads it.
Typical applications
Vetting a business partner. Before a contract, an advance payment or an investment: does the company really exist, who stands behind it, were there insolvencies or conspicuous renamings.
Checking a candidate. Matching CV claims against publicly verifiable facts — the classic background check and due diligence.
Preparing an observation. Knowing routines, vehicles and addresses in advance shortens the operation considerably. How the two fit together is covered in our article on surveillance and observation.
After a fraud. When money has gone and the recipient appears to have vanished, open sources often lead to connections nobody had seen before.
What OSINT is not
It is not access to residents’ registers, bank data, call records or location data. It is not breaking into accounts, not approaching people under a false identity, and not buying datasets of dubious origin. Anyone offering that is not working faster but illegally — and the result is of no use in any proceedings.
Data protection law applies even to purely open sources: a specific purpose, a legitimate interest and proportionality are all required. We research what the question requires, not everything that could be found.
What you receive
A structured report with a summary, a chronological account, a list of sources and a clear separation between established facts, indications and open points. Plus an assessment of what remains unresolved and which instrument could settle it — a polygraph examination, for instance, when the question ultimately comes down to the credibility of a statement. The service in detail: OSINT research.
Frequently asked questions
How long does research take? A basic check delivers a result in two to three working days; complex corporate structures take one to two weeks.
Will the person being checked find out? With pure open-source evaluation no contact is made.
What does it cost? Considerably less than any field operation, which is why we almost always start here. The online calculator gives an indication.
Can’t I just google it myself? The first ten per cent, yes. The difference lies in the registers, in the method, and in the fact that a report later has to convince somebody else.
