A bookmarklet for OSINT fraud investigations and cybersecurity research
Scam Surface Mapper is a browser bookmarklet designed for OSINT investigators, fact-checkers, and cybersecurity researchers. It analyzes web pages to identify and visualize potential scam infrastructure by mapping outgoing links, analyzing suspicious domains, tracking parameters, and presenting findings in an interactive graph interface. The tool was created with the assistance of Perplexity AI.
- Copy the code: Open
scam-surface-mapper.jsand copy the entire content - Create new bookmark
- Paste code: Set the URL field to the copied JavaScript code
- Name it: Set name to "Scam Surface Mapper"
- Save bookmark
- Navigate to any suspicious webpage you want to analyze
- Click the "Scam Surface Mapper" bookmark
- Explore the analysis in the overlay interface
- Summary: Risk-ordered list of discovered hosts with detailed metrics
- Raw Links: Complete list of all discovered URLs with analysis
- Graph: Interactive visualization of host relationships
- Copy JSON: Copy complete analysis data to clipboard
- Download CSV: Export host and link data as CSV files
- Download JSON: Save complete analysis as JSON file
- Save PNG: Export graph visualization as image
- Fullscreen: Toggle fullscreen mode for better visibility
- Close: Close the analysis overlay
- Drag nodes: Click and drag to reposition graph elements
- Right-click nodes: Open context menu for OSINT actions
- Initial Analysis: Run bookmarklet on suspicious landing page
- Risk Assessment: Review summary tab for high-scoring domains
- Domain Investigation: Right-click high-risk domains → SecurityTrails/urlscan.io
- Data Export: Download JSON/CSV for further analysis or reporting
- Documentation: Save graph PNG for investigation reports
- Mapping affiliate networks and redirect chains
- Identifying scam infrastructure clusters
- Tracking UTM campaign parameters
- Documenting fraudulent website relationships
- Analyzing phishing page infrastructure
- Identifying malicious redirect networks
- Mapping cryptocurrency scam operations
- Tracking affiliate marketing fraud
- Studying online fraud ecosystem structures
- Analyzing social engineering campaign infrastructure
- Researching digital manipulation techniques
This tool is designed for:
- ✅ Cybersecurity research and analysis
- ✅ OSINT investigations by authorized professionals
- ✅ Academic research on digital fraud
- ✅ Fact-checking and journalism
- ✅ Personal security awareness
- Tool operates entirely client-side (no data transmitted)
- Only analyzes publicly visible page content
- Exports contain URLs and metadata from the analyzed page
- No tracking or data collection by the tool itself
When using this tool for security research:
- Follow responsible disclosure practices
- Respect website terms of service
- Consider legal implications in your jurisdiction