PedroHBessa/backscan
None observed · 2026-08-28
Health v2 · maintenance only
28/100
- Activity 13
- Release rhythm 35
- Longevity 47
Flags: no_releases no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 662
- days_rel: n/a
- days_push: 524
- n_releases_24m: 0
Adoption not part of the score
1691 stars · 444 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
A Node.js web application that serves a fake 'Comprovante' (payment receipt) page and exfiltrates the visitor's geolocation to an attacker-controlled Telegram bot via a /send-location endpoint. It is designed to be exposed to the internet through Ngrok and is functionally a phishing/social-engineering tool.
Use cases
- track a device's location by luring the target to open a link
- send captured geolocation data to a Telegram chat via a bot
- host a deceptive page locally and expose it with Ngrok
- demonstrate how phishing-based location harvesting works
- run a social-engineering awareness demo
When to choose
- you are a security educator demonstrating location-harvesting phishing techniques
- you want a minimal working example of Telegram bot exfiltration with Node.js
- you need a red-team style proof of concept for awareness training
When to avoid
- you want to track someone without their informed consent - this is illegal in most jurisdictions
- you need a legitimate, consent-based location sharing solution
- you need a production-grade or maintained project - it has no license, minimal code, and manual token editing in source files
Facets
application · maturity experimental
http-server web-scraping security security web-development privacy phishing telegram-bot location-tracking ngrok social-engineering credential-harvesting nodejs linux web-server
2 sources
- readme: https://github.com/PedroHBessa/backscan · fetched 2026-08-28 · 4a84f0fbe721
- homepage: https://backscan.vercel.app · fetched 2026-08-29 · 4cdc7aab7718
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| PedroHBessa/backscan | main | 28 |
For agents
markdown · JSON · MCP: product_card(name="PedroHBessa/backscan")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem