TRACE is an OSINT and personal-exposure research tool. By using it you agree to the following:
If you do not agree, do not use this tool. Questions? Reach out on Discord.
TRACE exposes a small HTTP API under https://supidaf.com. Every data endpoint is gated by your access code and spends credits exactly like the site does. Send your code in the X-Access-Code header.
X-Access-Code: your-code to each request. Endpoints marked account also need a Netlify Identity bearer token (Authorization: Bearer <jwt>). Rate limits apply per IP.
GET /api/search/api/search?type=breach&q={email|user|ip}1 credit/api/search?type=stealer&q={identifier}1 credit/api/search?type=both&q={identifier}2 credits{ breach, stealer }. Runs two lookups, so it costs 2 credits.GET /api/search?type=roblox&q={username}1 credit?type=xbox&q={gamertag}1 credit?type=twitter&q={handle}1 credit?type=phone&q={e164}1 creditaccountGET /api/search free · code-gated?type=rbx-scan&q={username}?type=rbx-groups&q={username}?type=rbx-profile&q={username}?type=rbx-friends&q={username}?type=rbx-fof&q={username}?type=rbx-mutual&q={u1}&q2={u2}?type=rbx-presence&q={username}GET /api/search 1 credit / logOpening a log costs one credit total — the first access charges it, then browsing the whole file tree and every file inside that same log is free.
?type=manifest&log_id={id}?type=victim&log_id={id}?type=file&log_id={id}&file_id={fid}?type=statusfreeX-RateLimit-Remaining).?type=claim-freeaccountPOST /api/cryptopay{ action:"quote", pack, coin }{ action:"check", orderId }POST /api/dork-ai{ q, provider }accountprovider = gemini or groq. Rate-limited per IP.curl "https://supidaf.com/api/search?type=both&q=test@example.com" \ -H "X-Access-Code: your-code-here"
Codes are yours to keep private — anyone with a code can spend its credits. This API is for your own use and authorized OSINT only, under the same terms as the site.
Requires a verified Gmail account. One free credit per inbox.
No check has been run yet. Add what you want to look for, then run a check.
Your investigation canvas is empty.
Create a box with the toolbar, or hit “Send to OSINT Web” on any search result.
Include the country code (e.g. +44…). A key is required to use this feature, but it doesn't use any of your credits.
Public Roblox profile data only, fetched server-side via RoProxy. Every tool is gated by your access code but doesn't use any credits. Enter your code on the Breach Search tab first.
All tools below run on this username.
Samples the middle of the follower list and scores each account for bot-like signals (age, follow ratio, empty bio, random name).
Finds which of this user's groups their friends also belong to.
Pulls the full list of this user's public Roblox friends (usernames).
Maps which of this user's friends are also friends with each other.
Lists the friends the main user has in common with a second user.
Watches this user's public online status on a 10-second loop — see when they go online, join a game, or leave. Coarse only, nothing joinable. Stops automatically when you leave.