This content is for educational use only. Misuse of OSINT techniques for illegal activities, harassment, or violation of privacy is strictly prohibited and may result in legal consequences.
International legal frameworks
The following table summarizes the key legal frameworks that govern OSINT activities across jurisdictions. Understanding these requirements is mandatory before conducting any investigation.
| Country | Framework | Key requirement |
|---|
| Mexico | PDP Law 2018 | Explicit consent for PII |
| Spain | LOPD-GDPR | Art. 6.1-f: legitimate interest (research) |
| USA | CFAA | No bypass to authentication |
| Europe | GDPR | DPIA if >1000 people |
| — | OSINT-Code-Ethics | No doxxing, no stalking, no data selling |
Ethical checklist
Before conducting any OSINT investigation, verify each of the following items: