Open-source intelligence is not a single tool — it is a discipline. This framework maps every major source category used in corporate intelligence, due diligence, sanctions screening and asset tracing, with the investigative question each category is built to answer.
A professional OSINT framework is not a list of websites. It is a structured approach to a problem: starting with what is known, identifying what needs to be established, choosing the right source categories in the right order, and corroborating each finding before it becomes a conclusion. The nine categories below cover the full range of open-source intelligence used in corporate and financial investigations.
The foundation of any entity investigation. Company registries record incorporation details, registered addresses, officer appointments and, in many jurisdictions, financial filings. Key sources include:
Corporate registries establish the legal skeleton of an entity. They rarely reveal the full picture — nominee directors, layered ownership and offshore structures are designed precisely to defeat them — but they define the starting graph for any investigation.
Litigation history is among the most revealing OSINT sources. Courts produce detailed, sworn statements — a counterparty's prior disputes, fraud allegations, judgments against them and the names of those they have sued or been sued by. Key sources:
Skilled analysts read court documents for what they contain about third parties — the counterparty's suppliers, investors, family members and aliases — not just the named parties.
Sanctions screening and politically exposed person (PEP) checks are now standard in regulated sectors, but they matter equally in private due diligence. An investor with sanctioned family members, a supplier whose ultimate beneficial owner appears on the UN Consolidated List, or a counterparty who is a foreign official — these are risks that corporate registries do not surface. Primary sources:
Raw list screening is a minimum. Professional-grade sanctions intelligence maps indirect exposure: relatives, controlled entities, nominee holders and jurisdictional bypass structures used to circumvent designation.
Adverse media screening searches published reporting for connections to fraud, corruption, money laundering, regulatory enforcement and other reputational risk. The discipline requires breadth — local-language press in the subject's home jurisdiction, trade press, court reporting — and judgment about what constitutes genuine risk versus noise. Sources:
The absence of adverse media is never confirmation of integrity. A subject who has successfully managed their press profile, operated exclusively in low-disclosure jurisdictions, or settled disputes under NDA will appear clean in media. Adverse media is one layer; it confirms risk, but does not clear it.
For asset tracing, property registers are often the most direct route to locating recoverable assets. Ownership of land and real estate is publicly recorded in most developed jurisdictions, and modern beneficial ownership legislation increasingly requires disclosure of the ultimate human owner rather than a nominee or corporate vehicle. Key sources:
Asset registers answer one specific question: what does the subject own, and in whose name? When the legal owner differs from the economic owner, the gap between the two is where the investigation focuses.
Beneficial ownership is the core challenge in financial crime and high-stakes due diligence. The legal owner of a company or asset is frequently a nominee, a trust or an offshore shell — the economic owner sits behind multiple layers, sometimes across multiple jurisdictions. Sources that expose beneficial ownership include:
Beneficial ownership disclosures are self-reported and not comprehensively verified. They are a starting point, not an answer. In complex structures — particularly those involving CIS jurisdictions, BVI, or trust arrangements — OSINT analysis requires mapping connections between entities, timing of incorporations, and shared addresses, directors or registered agents.
Cryptocurrency transactions are permanently recorded on public ledgers. Blockchain OSINT has become a distinct discipline, with specialist tooling that traces flows across wallets, exchanges and protocols, identifies mixer usage, and maps connections to known illicit addresses. Core tools:
Blockchain OSINT is not limited to cryptocurrency fraud. It is increasingly used in asset tracing (locating crypto held by a judgment debtor), sanctions compliance (identifying indirect exposure to designated actors), and source-of-funds investigations.
Social media OSINT establishes identity, network, location history, affiliations and contradictions between a subject's stated and actual positions. It is particularly useful for verifying track record claims, identifying undisclosed relationships and geolocating activity. Key sources and tools:
Social media evidence is admissible in many jurisdictions if collected and preserved correctly. It is particularly valuable in litigation support, where establishing a subject's public statements, location or relationships can corroborate or contradict sworn testimony.
Geospatial OSINT uses imagery, mapping data and location intelligence to verify physical assets, confirm activity at a location and corroborate or refute other findings. It is routinely used in sanctions enforcement (to establish that a sanctioned vessel is at a particular port), asset tracing (to confirm that a property is occupied and maintained) and corporate intelligence (to verify that a business operates from its declared premises). Sources:
The value of a framework is not the list — it is the discipline it enforces. A professional investigation does not query one source and accept the result; it queries multiple categories, cross-references findings, explains discrepancies, and produces conclusions that are only as strong as the evidence behind them. A clean result from a sanctions database does not mean the subject is clean; it means the subject is not on that list. OSINT-grade intelligence requires the analyst to know what each source covers, what it misses, and where its silence is itself a signal.
Umbragarde applies this framework to corporate intelligence, due diligence and asset tracing mandates. We do not deliver database printouts. We deliver corroborated findings — with the sources behind them.
An OSINT framework is an organised set of sources, tools and methods used to gather intelligence from publicly available information. In professional investigations, it covers corporate registries, court records, sanctions databases, adverse media, beneficial ownership disclosures, property records, digital footprint and blockchain data. The framework structures how an analyst moves from raw data to verified, actionable intelligence.
For corporate and financial investigations, the nine main categories are: corporate and company registries, court and litigation records, sanctions and PEP databases, adverse media and news archives, property and asset registers, beneficial ownership disclosures, blockchain and cryptocurrency tracers, social media and digital footprint tools, and geospatial and satellite sources. Each answers a different investigative question.
In due diligence, OSINT verifies identity and track record, surfaces litigation history, maps corporate ownership and subsidiaries, identifies sanctions exposure, checks for adverse media, and establishes the real beneficial owner behind an entity. The analyst corroborates findings across multiple independent sources — a finding from one source is a lead; confirmed across three or more, it is a fact.
Yes. OSINT draws only on publicly available or lawfully accessible sources: company registries, court filings, regulatory announcements, published media, publicly visible social media and open government databases. In the UK, OSINT-based investigations are subject to GDPR and the DPA 2018, which require a legitimate purpose and proportionate scope — both satisfied by professional due diligence and asset recovery mandates.
A database check queries one or a few structured datasets and returns what matches. OSINT is broader: active collection across dozens of source categories, identifying connections that no single database contains, and applying analytical judgment to corroborate or refute what the data suggests. Professional OSINT uncovers what databases do not, and explains what databases get wrong.
Professional investigators use primary registries (Companies House, SEC EDGAR, OFAC SDN List, PSC register), specialist databases (World-Check, Dow Jones Risk, LexisNexis, Factiva), blockchain analytics platforms (Chainalysis, TRM Labs, Elliptic), court records systems (PACER, HMCTS, CourtListener), geospatial tools and proprietary systems that cross-reference the above. The tool is only as good as the analyst interpreting it.
One confidential message is enough. Tell us only what you are comfortable sharing — we take it from there.
Make a confidential enquiry