Scryer turns public data — BZP/BIP procurement and registry records, passive DNS — into ranked leads with personalization ammunition and ready mail briefs. Self-hosted, deterministic core, sha256-signed manifests, audit-ready.
Talus looks inside the host. Scryer looks at your outside exposure.
SCRYER_DB=leads.db scryer-core score seed/leads-demo.jsonSCRYER_DB=leads.db scryer-core briefs seed/leads-demo.json briefs/Procurement & public-registry records parsed into a typed ontology: entities, domains, tenders, hooks.
deterministic coreTransparent, audit-ready scoring: sector weight, self-registration hooks, active tenders, verified email. HOT/WARM/COLD tiers.
HOT ≥15 ptsMX + SPF + DMARC + A per lead domain — via own minimal DNS client. No scanning of third parties, ever, without authorization.
dnsminiCSV ready for Brevo import, one markdown brief per lead, JSON snapshot with sha256 manifest — audit-ready output.
sha256 manifestRelationship graph (org↔domain↔person) with components, bridges (single points of failure), shortest paths — plus shared-infrastructure hubs: two orgs on the same MX/NS/IP get connected automatically (passive DNS inference, no LLM).
graphx · bridges · timelineQuery API + graph view (bridge highlighting) + attack-surface view + event timeline on the local ontology. Binds to 127.0.0.1 by default.
axum · SQLiteBearer auth on the API, no telemetry, gated mail sending, deterministic and reproducible output.
localhost by defaultDeterministic core: same input → same output, sha256 manifest over the snapshot. One Rust binary, no cloud, no telemetry — data never leaves the operator's machine.
| Signal | Points | Source | Amunition |
|---|---|---|---|
| Sector: health / water / energy (KSC USK) | 9–10 | BIP sector parse | USK obligation angle |
| Hook: KSC self-registration ≤7 days | +5 | KSC registry | compliance deadline |
| Hook: active tender (BZP) | +4 | BZP | live procurement |
| Verified email / MX / SPF / DMARC findings | +3–6 | passive DNS audit | spoofing exposure angle |
Scryer is proprietary, intelligence-grade tooling for public entities (CSIRT / IK), critical-infrastructure operators and enterprise. The core is not open source.