Skip to content

Creepy

Geolocation OSINT tool for gathering location information from social platforms.

Self-hostedNot yet verified
Report issue
Apache-2.0★ 2600Source project only — not browser-runnable

External Tool

This open-source tool is maintained externally. View the source on GitHub to learn more or run it yourself.

Browse security tools →

What's next with Creepy?

Choose how you want to get started.

Use it free

Open the official tool or demo — no account needed.

Free

Self-host it

Run the open-source version on your own infrastructure.

Open

What is Creepy?

Creepy is an open-source geolocation OSINT (Open-Source Intelligence) tool designed to gather location-based data from social media platforms. Its primary purpose is to extract geospatial information, such as coordinates, timestamps, and location tags, from online profiles and posts. Security researchers, digital investigators, and cybersecurity professionals use Creepy to analyze patterns in geolocation data, identify potential threats, or verify the authenticity of user locations. The tool addresses the challenge of manually sifting through vast amounts of social media content to uncover geographically relevant insights, streamlining the process of location-based reconnaissance.

How it works

Creepy is a geolocation OSINT tool that automates the collection of location data from social networks like Twitter (X) and Instagram. It leverages public APIs to scrape profile information, location metadata, and other geospatial details, enabling users to map user activity across physical spaces. The tool is particularly useful for identifying discrepancies between claimed locations and actual geotagged data, which can reveal patterns of behavior or potential security risks. Its focus on open-source data makes it a resource for ethical hacking, threat intelligence, and digital forensics. Creepy can extract geolocation data from Twitter/X profiles, including location history, timezone settings, and geotagged tweets. It also gathers Instagram data such as location tags on posts and stories. The tool compiles this information into structured outputs, allowing users to visualize location trends over time.

How to use it

  1. 1Open the Creepy page
  2. 2Use the tool directly in your browser
  3. 3Results appear instantly — no waiting, no downloads

What it can do

  • geolocation OSINT

Use cases

Assumptions and limitations

Assumptions

  • source: https://github.com/jkakavas/creepy
  • license: Apache-2.0 — free to use
  • privacy: Self-hosted — you control your data

Limitations

  • Dual-use tool — use only with explicit authorization on systems you own or have permission to test.
  • The tool is no longer actively maintained, with the last update in 2016, rendering some features incompatible with current APIs.
  • Changes to Twitter/X and Instagram APIs have limited access to geolocation data, reducing its utility for modern use cases.
  • Outdated dependencies may cause compatibility issues with newer operating systems or software environments.
  • Limited support for newer platforms or features like Instagram Stories or Twitter Spaces.

Understanding the result

Geolocation OSINT tool for gathering location information from social platforms.

Tool details

  • Clearly flagged when a network request is needed.
  • No account, no sign-up, and no tracking of your content.
  • Powered by (Apache-2.0).
Built with
(jkakavas/creepy)
License
Apache-2.0
Runs locally
No — requires a network request
Verification
Not yet verified
Input
Query
Output
Text
Open-source source & license

Built with jkakavas/creepy. OpenToolVault provides the discovery and browser interface while crediting the original project maintainers.

Built with
License
Apache-2.0
View source on GitHub

Open-source project

License: Apache-2.0Source: this project

OpenToolVault is an independent directory. We are not affiliated with or endorsed by this project.

References

Frequently asked

What is Creepy used for?

Creepy is used to gather geolocation data from social media platforms like Twitter and Instagram. It helps users analyze location-based patterns, verify user authenticity, or conduct threat intelligence by extracting metadata such as coordinates, timestamps, and timezone settings from public profiles and posts.

How does Creepy collect geolocation data?

Creepy uses public APIs to scrape geospatial information from social media platforms. It extracts data such as location tags from Instagram posts, timezone settings from Twitter/X profiles, and geotagged tweets. The tool compiles this data into structured formats for analysis, though its effectiveness depends on API access and platform-specific features.

How do I configure Creepy to scrape data?

To configure Creepy, visit geocreepy.com and follow the installation instructions. Edit the configuration file to input API keys for Twitter/X and Instagram. Specify parameters like target usernames or location filters when running the tool. Ensure API access credentials are valid and review platform-specific rate limits to avoid errors.

How does Creepy compare to alternatives like OSINT Framework or Maltego?

Creepy focuses specifically on geolocation data from social media, whereas tools like OSINT Framework offer broader OSINT capabilities, including network analysis and document extraction. Maltego emphasizes visual relationship mapping, while Creepy prioritizes structured geospatial data collection. Creepy’s niche is narrower but more specialized for location-based reconnaissance.

What should I do if Creepy fails to scrape data?

Common issues include invalid API keys, deprecated endpoints, or rate limits. Verify that your API credentials are correct and up-to-date. Check if the target platform has restricted access to geolocation data. If the problem persists, consult the project’s archived documentation or seek community forums for troubleshooting guidance.

Spotted something wrong with Creepy, or want to maintain it? See how to help.