Holehe alternatives, best email OSINT tools compared
Holehe is one of the best-known email OSINT tools, but it is not the only one. Here are the best alternatives, their strengths, limits and when each one shines.
Why look for a Holehe alternative?
The most common reasons:
- CLI friction: the original Python version needs Python, pip and a terminal. Not ideal on mobile or in a meeting.
- Coverage gaps: some sites changed their sign-up flow and some Holehe modules become stale.
- Mobile: no official app, which pushes people to a web version.
- Volume: to scan thousands of addresses you want an API.
Top alternatives to Holehe
- EpieOS, the closest competitor. Web-based, free, email + phone + Google OSINT. Best when you want multiple identity signals from a single email.
- HaveIBeenPwned, the reference service to check whether an address appeared in a known data breach. Complementary to Holehe, not a replacement.
- EmailRep.io, reputation score for an address and context (disposable, corporate, suspicious). Useful for fraud triage and sign-up risk scoring.
- Sherlock / Maigret, same idea but pivoting on a username instead of an email. Excellent follow-up after a Holehe scan.
- GHunt, deep dive on a single Google account: profile photo, reviews, calendar, connected Google services. Specialised, not general.
- OSINT Industries, paid, enterprise-focused platform with API and advanced cross-source correlation. For SOC, fraud and CTI at scale.
Comparison table
| Tool | Type | Coverage | Free? | Best for |
|---|---|---|---|---|
| Holehe (online) | Web + CLI | 200+ sites per email | Yes | Email registration mapping |
| EpieOS | Web | Email, phone, Google | Yes | Fast multi-signal OSINT |
| HaveIBeenPwned | Web + API | Known breaches | Yes | Breach exposure |
| EmailRep | API | Email reputation | Freemium | Fraud triage |
| Sherlock / Maigret | CLI | Sites by username | Yes | Username pivot |
| GHunt | CLI | Google account | Yes | Google investigation |
| OSINT Industries | Web + API | Cross-source correlation | Paid | Enterprise, SOC, CTI |
Why Holehe (online) still wins for email-registration mapping
For the specific question "where is this email registered?", Holehe is still the reference: 200+ modules, an active community and well-categorised, readable results. The online version adds history and zero install. The other tools complement it, they do not replace it.
Frequently asked questions
- What is the best free alternative to Holehe?
- EpieOS is the closest free alternative, also web-based, with broader OSINT coverage beyond email (phone, username). For breach exposure, HaveIBeenPwned is free and complementary. For account discovery from a username instead of an email, Sherlock and Maigret are excellent open-source choices.
- Is EpieOS better than Holehe?
- They overlap but they are not the same. EpieOS leans toward Google-centric OSINT and adds phone-number lookups; Holehe specialises in mapping which of 200+ sites an email is registered on. For pure email-registration mapping, Holehe is usually deeper. For a "single email, multiple identity signals" report, EpieOS is convenient.
- Is there a Holehe API?
- There is no official public REST API. You can call the Python library directly from your own code (import holehe.core and friends). If you need an API for high-volume programmatic use, contact us through the site.
- Holehe vs Sherlock, what is the difference?
- Holehe takes an email and returns the sites where it is registered. Sherlock takes a username and returns the sites where that username has a profile. They are complementary: many investigators run Holehe first, extract the usernames the report surfaces, then run Sherlock or Maigret on those.
- Are there mobile alternatives to Holehe?
- No major Holehe alternative ships a real mobile app, most are Python CLIs that do not run cleanly on phones. The simplest mobile path is to open holehe-osint.com or epieos.com in your phone browser. Both work on Android and iOS without any install.