# codingo/Reconnoitre

A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.

Repository: https://github.com/codingo/Reconnoitre
Canonical: https://ross.abutalabs.com/products/reconnoitre
Language: Python
License: GPL-3.0
License Family: copyleft
Topics: oscp, penetration-testing, scanner, security, security-audit, security-tools, security-scanner, offensive-security, nmap, enumeration, scanning, kali-linux, service-enumeration, services-discovered, discover-services, range, snmp, hacking, hacking-tool, virtual-hosts
Last push: 2022-12-11T16:37:10+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3418, "days_push": 1361, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 2196, forks 451 (observed 2026-08-28T04:06:25.213408+00:00)

## What it is
Reconnoitre is a Python CLI tool for multithreaded information gathering and service enumeration of target hosts and ranges, built originally for OSCP lab work. It creates organized directory structures for results and loot, and writes out recommended follow-up commands for further testing.

## Use cases
- enumerate services on a target network during a pentest
- run a ping sweep and discover live hosts in a range
- automate nmap scanning across multiple hosts with saved output
- discover virtual hosts on a web server
- organize recon findings and exploits into per-host directories
- get recommended next-step commands for enumerated services
- prepare structured recon notes for OSCP lab machines

## When to choose
- you want an automated, multithreaded recon and enumeration workflow for pentest targets
- you need consistent directory structures and recommendations per host during OSCP-style labs
- you want a quick nmap-driven service discovery wrapper with vhost scanning

## When to avoid
- you need actively developed tooling - the maintainer recommends building enumeration workflows with Interlace instead
- you need a GUI or non-command-line interface
- you need vulnerability exploitation rather than reconnaissance and enumeration

## Facets
- artifact type: cli-tool
- maturity: maintenance
- function: security, penetration-testing, networking, cli
- domain: security, penetration-testing, networking
- platform: python, cli
- tags: reconnaissance, nmap, service-enumeration, oscp, vhost-discovery, offensive-security, command-line, linux

## Member repositories
- codingo/Reconnoitre (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:06:25.213408+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T02:47:12.999778+00:00, confidence not recorded.
  - readme: https://github.com/codingo/Reconnoitre (fetched 2026-08-28T04:06:25.213408+00:00, sha 763cd4d57544)
- Data as of 2026-08-30T08:39:29.467469+00:00.
