Home addresses and property
Addresses in property records, company filings, people-search sites and photos that reveal a location.
OSINT for executive protection gives your protection team the intelligence it works from: what a hostile person can find out about a principal, who is talking about them, and what is planned around the places they will be. We collect it from open sources, an analyst checks it, and your team decides what to do with it.
OSINT for executive protection is protective intelligence built from public and commercially available sources. It shows what an attacker can learn about an executive and their family, such as home address, routines and travel, and it watches for threats, fixated individuals, doxxing and planned protests. OSINT-S delivers it as an exposure audit, ongoing alerts and pre-trip or pre-event briefings for your protection team.
It is the intelligence side of protection: finding the information an attacker would use, reducing it where you can, and spotting warning signs early enough to act.
Attacks on executives are usually preceded by research: the home address, the school run, the gym, a relative's holiday photos, the keynote time on a conference agenda. The same sources are open to a protection team. OSINT for high-profile individuals means looking at the principal the way a hostile person would, before they do.
Our work answers three questions for your protection lead:
We are an intelligence provider, not a security company. We do not supply bodyguards, drivers, residential guards or armed protection. We brief the people who do.
Security chiefs report more threats of violence against executives, and online hostility, activism and misinformation increasingly spill into the physical world.
In Allied Universal's 2025 World Security Report (press release):
The last figure matters: an executive may be well protected at work while a spouse's public profile or a second home listed under the family name stays exposed. Our audits and monitoring can cover the family, within a scope the principal agrees to.
A map of the personal information a hostile person could assemble from public sources, ranked by how much it would help them and how easily it can be reduced.
Addresses in property records, company filings, people-search sites and photos that reveal a location.
Fitness apps, regular venues, clubs and posts that show where the principal will be and when.
Public accounts, tagged photos, school and university pages, and relatives' posts that disclose homes, travel or schedules.
Personal emails, phone numbers and passwords exposed in breaches and criminal sources, which enable account takeover and doxxing.
Dark web monitoring →Accounts and domains posing as the executive, used for fraud, phishing of staff or reputational attacks.
Brand protection →Published speaking slots, hotel details, check-ins and aircraft information linked to the principal.
We watch open sources for hostile interest in named principals and escalate it to your protection lead with an assessment of how serious it is.
| Signal | Where it usually appears | What we send |
|---|---|---|
| Fixated individuals | Repeated posts, emails to public inboxes, comments, forums | A profile of the account and its history, escalation markers, links to earlier incidents |
| Protest and activist planning | Public channels, event pages, campaign sites, local media | Date, place, expected size and tactics, with the sources |
| Doxxing | Paste sites, forums, social media, leak channels | What was published, where, how far it spread, and removal options |
| Threats and calls to action | Social media, comment sections, messaging channels | Verified wording, context, credibility assessment, urgency |
| Impersonation | Social networks, messaging apps, look-alike domains | Account details and evidence for takedown requests |
Monitoring runs on our analyst-reviewed platform, which updates hourly. An analyst reads each hit and decides whether it goes to your team now, in the daily summary or not at all. The same setup supports wider OSINT monitoring of brands, sites and events if you need it.
Decisions about protective measures or police referral stay with your protection lead and counsel.
A short scoping call, a baseline exposure audit, then monitoring and briefings that follow the principal's calendar.
Before a trip, an AGM or a public appearance, we tell the detail what is being said and planned around it, and what about the visit is already public.
For a trip or event, we check what has been published about the visit, recent incidents and protests near the venue and routes, and online attention to the principal in the days before. For residences, we look at what reveals the property and its occupants: listings, planning records, aerial imagery, contractor posts and neighbors' social media. The detail leader gets a one-page summary with sources attached. For destination-level risk, see our travel risk intelligence service. Urgent requests can be turned around faster for a fee of 50% on top of the quote.
Remove what can be removed, change how the family shares, and watch for anything new. Total invisibility is not realistic; making the principal harder to research is.
For a wider review of a whole leadership team or an organization, our digital footprint assessment covers the same ground at company level.
No physical protection, no hacking, no covert surveillance of private lives, and no targeting of critics for lawful speech.
We do not provide close protection, guarding or physical security, and we do not replace your protection team or the police. We do not access private accounts, use fake profiles to join closed groups, buy stolen data or obtain records by pretexting, which is illegal for financial records in the US (15 U.S.C. § 6821). People who criticize a company or its leaders are not threats because they criticize; we flag hostile intent and escalation, not opinions. Monitoring of named individuals is documented and proportionate, in line with GDPR legitimate-interest rules where they apply (EDPB Guidelines 1/2024).
This is one of several OSINT services for corporate security teams. For broader programs, see our page for corporate security.
Focused versions of executive protection for specific subjects, deals and situations.
Exposure audits, remediation and monitoring for UHNW families, public figures and family offices, covering homes, children, staff and travel.
Read more →Alerts when an executive's home address, family details or routines are published with hostile intent, graded and escalated to your protection team.
Read more →Advance intelligence for executives at conferences, AGMs, roadshows and site visits: what is public, who is hostile and what is planned nearby.
Read more →Tell us who needs protecting, what is coming up in their calendar and who should receive alerts. We send a fixed quote after written scoping, and all work is covered by NDA.
It starts with an exposure audit: we find every public place her address, family details, routines and travel appear, rank them by risk and show you captures. We then check whether the thread is spreading, who posted it and whether there are signs of intent. You receive a remediation list and, if you want, ongoing monitoring. A focused audit takes from 10 business days; urgent work costs 50% more.
Advance warning and context. Your detail sees what is in front of them; we see what is being said and planned online before it reaches the street, such as a protest called outside a venue, a fixated account escalating, or a family member posting the hotel name. We brief your detail; we do not replace it.
Ask for a personal exposure audit before the announcement. We search the sources a hostile researcher would use, such as property and company records, people-search sites, breach data and your family's social media, and show you what links your name to your home and routines. Then we give you a prioritized list of opt-outs, settings changes and removals.
Yes. We monitor public sources for named principals, agreed keywords and addresses, not employees' private accounts or messages. Each person on the watchlist has a documented reason, and principals know they are covered. In the EU and UK this relies on legitimate interests with a balancing test, so the scope stays proportionate. We do not join closed groups under false identities.
It covers what is already public about her appearance, recent incidents and protests near the venue and hotel, local crime and unrest reporting, activist interest in the event or your sector, and any online attention to her in the run-up. Small briefings can sometimes be done in a business day; for larger events we agree the delivery date when we scope the work.
We can assess the account's history, links to other accounts, posting patterns and escalation markers, and any public details that point to identity, with a stated confidence level. Attribution from open sources is not always possible. Whether to call the police is your decision; with threats to children we recommend involving them early. We do not hack accounts or contact the person.
Our platform updates hourly and an analyst reviews every hit before it reaches you. Most weeks you get a short summary and only a few individual alerts; urgent items, such as a credible threat or a published address, go to your named contact immediately. Volumes depend on how public the principals are and the thresholds agreed at setup.
Sources checked 7 October 2026. Figures about third-party firms and tools are as published by them or by the cited source on that date.