# Colombia OSINT - Credentials & Exposures Found
## Date: 2026-02-25

---

## 1. GOOGLE CLOUD SERVICE ACCOUNT (CRITICAL)
**Source**: https://www.colombiahumana.co/portal/wp-content/themes/colombiahumana/colombia-humana-2024-ea35973a5d65.json
**Status**: PUBLICLY ACCESSIBLE - FULL PRIVATE KEY EXPOSED

- **Type**: service_account
- **Project ID**: colombia-humana-2024
- **Private Key ID**: ea35973a5d652bc0c138e22d6f9b0983b696a36f
- **Client Email**: google-analytics-asamblea-2024@colombia-humana-2024.iam.gserviceaccount.com
- **Client ID**: 106731429309082488283
- **Full RSA Private Key**: EXPOSED (saved in gcp-service-account-key.json)
- **Auth URI**: https://accounts.google.com/o/oauth2/auth
- **Token URI**: https://oauth2.googleapis.com/token

**Risk**: Full GCP service account access. Can authenticate as this service account and access any resources it has permissions for (Analytics, potentially more).

---

## 2. AWS INFRASTRUCTURE (CRITICAL)
**Source**: https://app.ia.policia.gov.co (Police AI Platform)
**Status**: FRESH STS CREDENTIALS GENERATED ON EVERY PAGE LOAD

- **AWS Account ID**: 926162397524
- **S3 Bucket**: pon-prod-ai-platform-926162397524
- **Region**: us-east-1
- **Latest Access Key**: ASIA5PI4UVFKL3IFXKMF (temporary, 15-min expiry)
- **Security Token**: IQoJb3JpZ2luX2VjED4aCXVzLWVhc3QtMSJGMEQCIEhIrd8oEa... (truncated)
- **Type**: STS Temporary Credentials (new ones generated per page load)

### AWS Cognito
- **User Pool ID**: us-east-1_s8S1IYnxv
- **Source**: nadia.ia.policia.gov.co JS bundle

### AWS API Gateway
- **Endpoint**: https://qb4jva2046.execute-api.us-east-1.amazonaws.com
- **Status**: Returns 401 (needs Cognito auth)

### AI Models Available (Bedrock)
- Claude 4 (Opus)
- Claude 4 (Sonnet)
- Claude 3.7 Sonnet
- Claude 3.5 Sonnet v1/v2
- Claude 3.5 Haiku v1
- Claude 3 Opus
- Claude 3 Haiku
- Titan Embedding Text v2
- Cohere Embed Multilingual v3

**Risk**: STS tokens allow S3 access to the AI platform bucket. Cognito pool can be probed for user enumeration. API Gateway endpoint exposed.

---

## 3. GOOGLE ANALYTICS (HIGH)
**Source**: https://www.colombiahumana.co/portal/wp-json/ch/v1/active-users
**Status**: MEASUREMENT ID AND DEBUG INFO LEAKED IN API RESPONSE

- **GA Measurement ID**: 469597137 (Property ID: 469597137)
- **Credentials File Path**: /www/wwwroot/colombiahumana.co/portal/wp-content/themes/colombiahumana/colombia-humana-2024-ea35973a5d65.json
- **Server Root Path**: /www/wwwroot/colombiahumana.co/portal/

---

## 4. WORDPRESS USERS (MEDIUM)
### Main Portal (www.colombiahumana.co/portal)
- **danielb** (ID: 1) — Admin
- **luischavarria** (ID: 3) — Admin
- **nuevo2024luischavarria** (ID: 139585) — Likely new admin account

### CRM (crm.colombiahumana.co)
- WordPress with Groundhogg CRM (181 API routes)
- Wordfence WAF present
- API endpoints need authentication

---

## 5. NEXTCLOUD INSTANCE (MEDIUM)
**Source**: https://nube.colombiahumana.co
**Status**: LOGIN PAGE EXPOSED WITH FULL CONFIG

- **Version**: Nextcloud 30.0.6.2
- **Product Name**: "Nube Colombia Humana"
- **Slogan**: "un hogar seguro para todos tus datos"
- **Session Lifetime**: 1440 seconds
- **Federated Sharing**: ENABLED
- **Remote Sharing**: ALLOWED
- **Request Token**: Visible in page source

### Installed Apps (sensitive ones):
- **snappymail** - Email client
- **impersonate** - Admin impersonation capability
- **libresign** - Digital signatures
- **forms** - Data collection forms
- **groupfolders** - Shared folders
- **logreader** - Log reader
- **app_api** - External app API

---

## 6. ArcGIS REST SERVICES (CRITICAL - NO AUTH)
### Presidential ArcGIS (ergit.presidencia.gov.co)
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS Enterprise 11.3.0 (Build 51575)
- **Folders**: 29
- **Root Services**: 31
- **Key Military Services**:
  - CNR_SEP_2025_MIL1 (September 2025 military map)
  - CNR_julio_2025_MIL1 (July 2025 military map)
  - Armed group territories: ELN, Clan del Golfo/AGC, Disidencias EMC, EMBF, Segunda Marquetalia
  - AETCR camps (FARC reintegration GPS coordinates)
  - Peace Signatory Attack data (92MB!)
- **Key DDHH Services**: 22 human rights services
  - Fiscalia GIS, FECOLPER, FLIP, Medicine Legal
  - Protection routes, risk dynamics

### DNP ArcGIS (gis.dnp.gov.co)
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Folders**: 6
- **Root Services**: 15
- **Key Military Services**:
  - Geovisor_CTT_B_MIL1/2/3 (Military geovisors)
  - IHEH_MIL1 through IHEH_MIL7 (7 military services)
  - Proyectos_RUAPP_2022_MIL1 (Rural projects)
- **PISCC**: National security plan with 9.7MB of prioritized municipalities
- **CATASTROMULTIPROPOSITO**: Land registry data
- **JOVENES_DANE**: Youth demographics

### UPRA ArcGIS (sig.upra.gov.co)
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS Enterprise 11.3
- **Arcgis Endpoint**: 17 folders, 2 root GP services
- **Server Endpoint**: 17 folders, 1 root service
- **Key Folders**:
  - Adecuacion_Tierras_Rurales (Rural land development)
  - Aptitud_Uso_Suelo (Land use aptitude)
  - Formalizacion_Propiedad (Property formalization)
  - Mercado_Tierras_Rurales (Rural land market)
  - Monitoreo_Cultivos (Crop monitoring - agricultural intelligence)
  - Ordenamiento_Productivo (Productive planning)
  - Ordenamiento_Social_Propiedad (Social property planning)
  - Prospectiva (Forecasting)
  - costos_prod_agro (Agricultural production costs)
  - ladmcol (Land administration)
  - predios (Properties/parcels)
  - Hosted/MGN_DEPARTAMENTOS_2026 (2026 dept boundaries)
  - Hosted/MGN_MUNICIPIOS_2026 (2026 municipality boundaries)

### MinAmbiente ArcGIS (sig.minambiente.gov.co)
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS 10.81
- **Folders**: HAC, Utilities
- **Services**: HAC/HAC_UER (MapServer) - Hydrographic data
- **Layers**: 8 layers covering sub-zones, zones, hydrographic areas, municipalities, departments, nodes, action plans
- **Total features**: 1,569 records (316 sub-zones, 1121 municipalities, 40 zones, etc.)

### Contraloría ArcGIS (gis.contraloria.gov.co)
**Status**: PARTIALLY ACCESSIBLE

- **Version**: ArcGIS Enterprise 11.3
- **Total Folders**: 24 (most require token auth)
- **PUBLIC folders** (no auth):
  - `Hosted`: Departments (33MB), Municipalities (944K), watermark
  - `GEOPORTALPROYECTOS`: 5 services - APPUI projects, contracting, mega-works
  - `GOB`, `Integracion`, `INVENTARIO`, `VISOR_IMAGENES` (attempted)
- **AUTH-PROTECTED folders** (Token Required):
  - `COCA` (coca cultivation mapping)
  - `TITULOS_MINEROS` (mining titles)
  - `004_PROYECTOS_POSCONFLICTO_2024` (post-conflict)
  - `SEGUIMIENTO_HOSPITALES_2025` (hospital monitoring)
  - `SEGUIMIENTO_101_MEGAOBRAS` (mega-works tracking)
  - `NBI` (basic needs index)
  - `MODELO_MINERIA` / `MODELO_MEDIO_AMBIENTE`
  - `ALCALDES_GOBERNADORES_2024` (mayors/governors)
  - `MOE_2023` (electoral observation)
  - `PARAMOS_CARACTERIZACION` (páramo characterization)
- **Portal URL**: https://gis.contraloria.gov.co/portal

### Parques Nacionales ArcGIS (mapas.parquesnacionales.gov.co)
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS 10.51
- **Folders**: 7 (pnn, runap, IGAC, deprecated, pruebas, Plantilla_Impresion, Utilities)
- **Key Services**:
  - Land cover data 2002-2024 (8 temporal layers + 6 high-res layers)
  - Official park boundaries (polygon, line, point)
  - RUNAP (National Registry of Protected Areas)
  - Zoning data (official management plans)
  - IGAC new areas

### CAR ArcGIS (sig.car.gov.co) — WAVE 2
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS Enterprise 11.1
- **Folders**: 7 (CARTOGRAFIA_EN_LINEA, CuencaAlta, Donde_esta_mi_predio, Mineria, RESERVA_TVDH, RIESGOS, VISOR)
- **Key Data**: Land coverage (2.7GB), contour lines, POMCA watershed zoning, geology, protected areas, mining titles, drainage, roads

### Bogota Cadastre (sig.catastrobogota.gov.co) — WAVE 2
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS Enterprise 11.3
- **Folders**: 20 (ambiente, catastro, educacion, emergencias, movilidad, salud, social, etc.)
- **Key Data**: Building heights per block (1.1GB), property valuations (commercial + cadastral), census blocks, residential/commercial area, property counts — FULL BOGOTA PROPERTY DATABASE

### ANH Hydrocarbons (geovisor.anh.gov.co) — WAVE 2
**Status**: FULLY ACCESSIBLE - NO AUTHENTICATION

- **Version**: ArcGIS Enterprise 11.1
- **Folders**: 7 + 5 root services
- **Key Data**: 27,274 oil/gas wells with GPS coords, seismic surveys (2D+3D), sedimentary basins, hydrocarbon land parcels (current + historical), coal mines, yacimientos (deposits)

---

## 7. COLOMBIA HUMANA PII (HIGH)
**Source**: https://decidim.colombiahumana.co/index.php?action=get_confirmados
**Status**: NO AUTH REQUIRED - FULL DATASET RETURNED

- **Total Delegates**: 1,870 records
- **Confirmed**: 1,285
- **Unconfirmed**: 585
- **Departments**: 36 (including Afro, Indigenas, LGTBIQA+, Internacional, JNC)
- **Fields Per Record**: confirmacion, departamento, municipio, nombres, apellidos, cedula
- **PII Exposed**: Full names + national ID (cédula) numbers

### Cédula Lookup API
- **Endpoint**: POST https://decidim.colombiahumana.co/index.php
- **Input**: cedula=[number]
- **Output**: Partially masked email (e.g., va******c@g****.com)

---

## 8. FORM STRUCTURES (MEDIUM)
**Source**: https://www.colombiahumana.co/portal/wp-json/frm/v2/forms
**Status**: 20 FORM STRUCTURES PUBLICLY ACCESSIBLE

Key forms collecting PII:
- **Registro Afiliados** (Form 10): Name, doc type/number, DOB, email, phone, address, gender, LGBTQ+, disability, ethnicity, displacement status, ID photo upload
- **Asamblea Confirmación** (Form 3): Delegate confirmation data
- **Postulación Jurados 2025** (Form 14): Jury nominations
- **Registro Desafiliaciones** (Form 12): Disaffiliation records
- **Crear Nodos** (Form 11): Node creation (organizational units)
- **Asamblea Departamentales** (Form 6): Departmental assembly data

Entries (actual submitted data) require authentication (403).

---

## 9. DNS VERIFICATION TOKENS (LOW)
From prior sessions:
- **Google Site Verification**: ZbFu0BAhJKxdmmP1uDBmrB3APD7G290CWV3l8ieJ_Lw
- **Microsoft 365**: ms11844033, ms33132372, ms37011212
- **GlobalSign**: ynqUB_TdDIexM50K56_qt2QTD06Rk96h9QVlmsE_CG
- **Cisco CI**: 50f370706a12aaca6d1d02152128404936a7b128da5b6237a2b36ef5f5a37094

---

## 10. SESSION COOKIES (from prior session)
**Source**: Police AI Platform
- secret=ogPXHONRigakoecq
- ds=bxZlKImIvSKbaxwW (Expires 2035!)
- session=f9447787b0f7718f_695c0481.Top27tmOWfgqPlLdK9viW2FbncA

---

## 11. SERVER PATHS LEAKED
- **Colombia Humana**: /www/wwwroot/colombiahumana.co/portal/
- **GCP Creds Path**: /www/wwwroot/colombiahumana.co/portal/wp-content/themes/colombiahumana/colombia-humana-2024-ea35973a5d65.json

---

## 12. WORDPRESS MEDIA UPLOADS (MEDIUM)
**Source**: https://www.colombiahumana.co/portal/wp-json/wp/v2/media
**Status**: 16 MEDIA ITEMS PUBLICLY ACCESSIBLE

- **Cédula PDF**: uploaded via Formidable Forms (form 10) - personal ID document
  - `wp-content/uploads/formidable/10/cedula-76.pdf`
- **Affiliation Letter**: `wp-content/uploads/2024/10/CARTA-DE-SOLICITUD-DE-AFILIACION-CH.pdf`
- **Disaffiliation Letter**: `wp-content/uploads/2024/11/CARTA-DE-SOLICITUD-DE-DESAFILIACION.pdf`
- Branding assets (logos, wallpapers, screenshots)

---

## 13. XMLRPC ENABLED (MEDIUM)
**Status**: Both WordPress instances have XMLRPC enabled

- **Portal**: https://www.colombiahumana.co/portal/xmlrpc.php
  - Methods exposed: system.multicall, mt.*, metaWeblog.*, wp.*, blogger.*
- **CRM**: https://crm.colombiahumana.co/xmlrpc.php
  - Same methods exposed
- **Risk**: Brute force attack vector, pingback amplification

---

## 14. DELEGATE BREAKDOWN BY DEPARTMENT
**Source**: decidim.colombiahumana.co - 1,870 delegates total

| Department | Count | Department | Count |
|-----------|-------|-----------|-------|
| Valle | 217 | Bogotá DC | 159 |
| Santander | 135 | Antioquia | 133 |
| Cauca | 118 | Cundinamarca | 106 |
| Atlántico | 85 | Boyacá | 69 |
| Internacional | 66 | LGTBIQA+ | 58 |
| Norte de Santander | 58 | Magdalena | 55 |
| Sucre | 54 | Huila | 53 |
| Bolívar | 52 | Córdoba | 52 |
| Afro | 51 | Casanare | 51 |
| Cesar | 42 | La Guajira | 34 |
| Nariño | 30 | Risaralda | 29 |
| Meta | 24 | Tolima | 24 |
| Putumayo | 23 | Chocó | 21 |
| Caquetá | 15 | Indígenas | 12 |
| Quindío | 10 | Caldas | 9 |
| Arauca | 8 | Guaviare | 5 |
| Vichada | 5 | JNC | 4 |
| Amazonas | 2 | Vaupés | 1 |

---

## 15. AGORA PARTY MANAGEMENT PLATFORM (HIGH)
**Source**: https://agora.colombiahumana.co
**Status**: LOGIN PAGE ACCESSIBLE, 869 ROUTES EXPOSED VIA ZIGGY CONFIG

- **Framework**: Laravel + Inertia.js + Vue
- **CSRF Token**: A19TNRvHnFhVqYv8tVp0e9CghWMSJ89MyeZyVN6F
- **Auth**: Laravel Sanctum (sanctum/csrf-cookie returns 204)
- **Laravel Horizon**: Dashboard exists but returns 403
- **869 Admin Routes** exposed covering:
  - Assembly management (asambleas), participants, voting
  - Candidacy approval/rejection workflow
  - Campaign management (email, WhatsApp, SMS templates)
  - Contract management with evidence tracking
  - Electoral processes, witnesses, evidence review
  - Training courses (enrollment, content, reporting)
  - Data operations with spreadsheet views
  - Political division mapping (divipol)
  - Person/member management with tags
  - Node/chapter management
  - OTP dashboard with queue stats
  - File upload/download API
  - Full system configuration (auth, email, legal, registration)
- **Risk**: Complete route map for the party management platform. Enables targeted attacks on specific admin endpoints if auth is compromised.

---

## 16. CONTRALORÍA PROJECT DATA (HIGH)
**Source**: https://gis.contraloria.gov.co
**Status**: 26,089 PROJECT RECORDS EXTRACTED

- **APPUI Projects**: 21,791 government infrastructure projects with location data
- **Contracting Reports**: 4,165 contracting/procurement records
- **Mega-works**: 100 major infrastructure projects tracked
- **Department Contracting**: 33 department-level contracting summaries
- **Image Requests**: Solicitudes de imágenes (satellite imagery requests)
- **Risk**: Detailed government spending, contractor info, project locations

---

## 17. PARQUES NACIONALES FEATURES (MEDIUM)
**Source**: https://mapas.parquesnacionales.gov.co
**Status**: 23,000+ FEATURES EXTRACTED

- **RUNAP**: 1,837 registered protected areas
- **Park Boundaries**: 65 national park polygons + 2,264 boundary points
- **Zoning**: 5,204 management zone features
- **Conservation Priorities**: 16,437 priority areas for conservation
- **New Areas**: 5 newly designated areas
- **Risk**: Complete mapping of protected areas infrastructure

---

## 18. SMTP2GO EMAIL SERVICE (LOW)
**Source**: https://link.colombiahumana.co
**Status**: SMTP2GO tracking/link management interface exposed
- Used for email campaign link tracking
- Reveals email service provider choice

---

## SAVED FILES INDEX

### Credentials & Infrastructure Files
| File | Size | Description |
|------|------|-------------|
| `colombia-humana/gcp-service-account-key.json` | 2.4KB | FULL GCP RSA private key |
| `police-ai/aws-credentials-extracted.json` | - | AWS STS creds summary |
| `police-ai/nadia-infrastructure.json` | - | Cognito, API Gateway, Bedrock models |
| `police-ai/nadia-app-bundle.js` | 2.4MB | Full NADIA Vite JS bundle |
| `police-ai/app-login-page.html` | 16KB | Police AI login with pre-signed S3 URLs |
| `police-ai/app-next-data.json` | - | Next.js build data with S3 endpoints |
| `police-ai/nadia-page.html` | - | NADIA AI page |
| `police-ai/aisearchengine.html` | - | AI Search Engine page |
| `police-ai/catalog.html` | - | Catalog page |
| `police-ai/maps-analytics.html` | 2.4KB | Maps Analytics Kepler.gl page |
| `police-ai/maps-analytics-bundle.js` | 345KB | Maps Analytics JS bundle |
| `police-ai/maps-analytics-endpoints.json` | - | Extracted endpoints + vendor info |

### Colombia Humana Party Files
| File | Size | Description |
|------|------|-------------|
| `colombia-humana/decidim-confirmados.json` | 267KB | 1,870 delegate records (names + cédulas) |
| `colombia-humana/agora-routes.json` | 117KB | 869 Laravel routes exposed |
| `colombia-humana/agora-page.html` | - | Agora platform full page + Ziggy config |
| `colombia-humana/portal-forms.json` | 58KB | 20 Formidable form structures |
| `colombia-humana/form-*-fields.json` | ~300KB | 20 individual form field definitions |
| `colombia-humana/crm-gh-v3.json` | 12KB | Groundhogg CRM v3 API schema |
| `colombia-humana/crm-gh-v4.json` | 38KB | Groundhogg CRM v4 API schema (181 routes) |
| `colombia-humana/portal-active-users.json` | - | GA leak + server path |
| `colombia-humana/portal-users.json` | - | WordPress user enumeration (3 users) |
| `colombia-humana/portal-media-p1.json` | - | WordPress media library (16 items incl cédula PDFs) |
| `colombia-humana/portal-ch-v1.json` | - | Custom ch/v1 API namespace |
| `colombia-humana/portal-frm-v2.json` | - | Formidable Forms frm/v2 API routes |
| `colombia-humana/nube-status.json` | - | Nextcloud 30.0.6.2 server info |
| `colombia-humana/nube-login.html` | - | Nextcloud login page with full config |
| `colombia-humana/decidim-delegates-portal.html` | - | Delegates portal source |

### ArcGIS Data Dumps
| Directory | Size | Files | Source |
|-----------|------|-------|--------|
| `arcgis/` | 2.0GB | 241 | ergit.presidencia.gov.co |
| `arcgis-dnp/` | 841MB | 199 | gis.dnp.gov.co |
| `arcgis-upra/` | 12GB | 118 | sig.upra.gov.co |
| `arcgis-minambiente/` | 330MB | 10 | sig.minambiente.gov.co |
| `arcgis-contraloria/` | 95MB | 40 | gis.contraloria.gov.co |
| `arcgis-parques/` | 2.5GB | 29 | mapas.parquesnacionales.gov.co |
| `arcgis-car/` | 5.2GB | 54 | sig.car.gov.co |
| `arcgis-catastro-bogota/` | 2.4GB | 175 | sig.catastrobogota.gov.co |
| `arcgis-anh/` | 614MB | 124 | geovisor.anh.gov.co |

### Key Presidential ArcGIS Data Files (by size)
| File | Size | Content |
|------|------|---------|
| `Municipio_Victimas_data.json` | 320MB | Municipality-level victim data |
| `Resguardos_Afectacion_Sc_etnicos_data.json` | 184MB | Indigenous reserve ethnic impact |
| `Consejos_Afectacion_Sc_etnicos_data.json` | 85MB | Community council ethnic impact |
| `Afectaciones Firmantes 1er semestre 2025_data.json` | 92MB | Peace signatory attacks H1 2025 |
| `MatrizDepartamental_data.json` | 77MB | Departmental matrix |
| `MatrizDepartamental_MujeresLibresViolencia_data.json` | 77MB | Women free from violence data |
| `Departamentos_data.json` | 77MB | DDHH quarterly report departments |
| `IGAC_Departamento_data.json` | 77MB | UIAFP project departments |
| `Presencia de Firmantes a nivel muncipal_data.json` | 51MB | Peace signatory presence by municipality |
| `Municipios_data.json` | 51MB | Case 003 municipalities |
| `Municipios_PEP_data.json` | 44MB | PEP municipalities |
| `Clan del Golfo - AGC_data.json` | 35MB | Clan del Golfo/AGC territory data |
| `DDHH_MEDICINA_LEGAL_data.json` | 34MB | Forensic medicine DDHH data |
| `ELN_data.json` | 17MB | ELN territory data |
| `Municipios_AT_2025_data.json` | 11MB | 2025 municipality land data |

### Key UPRA ArcGIS Data Files (by size)
| File | Size | Content |
|------|------|---------|
| Cypress forestry zoning features | 3.9GB | Cupressus lusitanica plantation aptitude |
| Shrimp farming zoning features | 858MB | Camarón blanco aquaculture aptitude |
| Beekeeping zoning features | 610MB | Commercial apiculture aptitude |
| Acacia forestry zoning features | 520MB | Acacia mangium plantation aptitude |
| Cachama aquaculture zoning features | 450MB | Cachama blanca/negra farming aptitude |
| Ceiba tolúa forestry zoning features | 446MB | Bombacopsis quinata plantation aptitude |
| MGN_MUNICIPIOS_2026 features | 246MB | 2026 municipality boundaries (all Colombia) |
| Coconut cultivation (Pacific) features | 108MB | Coco aptitude - Nariño/Cauca/Valle/Chocó |
| MGN_DEPARTAMENTOS_2026 features | 43MB | 2026 department boundaries |
| Cesar aquifers features | 6.8MB | Hydrological data |
| Irrigation districts (polygon) features | 5.0MB | Rural irrigation infrastructure |

### Key Contraloría Data Files
| File | Size | Records | Content |
|------|------|---------|---------|
| `VW_PROYECTOS_APPUI_features.json` | 27MB | 21,791 | Gov infrastructure projects |
| `VW_PROYECTOS_CONTRATACION_features.json` | 4.2MB | 4,165 | Contracting/procurement |
| `capa_deptos/polygons_features.json` | 33MB | - | Department polygons |
| `VW_PROYECTOS_MEGAOBRAS_features.json` | 112KB | 100 | Major infrastructure works |
| `MUNICIPIOS/polygons_features.json` | 940KB | - | Municipality polygons |

### Key Parques Nacionales Data Files (by size)
| File | Size | Content |
|------|------|---------|
| Coberturas_2019_features.json | 518MB | 2019 land cover (25K resolution) |
| layer_0_Coberturas_2019_features.json | 518MB | 2019 land cover (alternate layer) |
| layer_2_Coberturas_2021_features.json | 189MB | 2021 land cover |
| Zonificacion_PNN_PM_Oficial_features.json | 146MB | Official park zoning |
| Coberturas_2002_features.json | 143MB | 2002 historical land cover |
| Prioridades_de_conservación_nacional_features.json | 106MB | 16,437 conservation priority areas |
| Zonificacion_PNNC_PM_Oficial_features.json | 99MB | Park zoning (2023 update) |
| Limites_oficiales_Linea_features.json | 65MB | Official park boundary lines |

### Documentation
| File | Size | Description |
|------|------|-------------|
| `CREDENTIALS_FOUND.md` | 16KB | This file - all credentials & exposures |
| `FINDINGS_REPORT.md` | 13KB | Comprehensive findings report |

### Scripts
| File | Description |
|------|-------------|
| `arcgis_dumper.py` | Presidential ArcGIS service enumerator & dumper |
| `dnp_arcgis_dumper.py` | DNP ArcGIS dumper |
| `upra_arcgis_dumper.py` | UPRA ArcGIS dumper (dual endpoint) |
| `contraloria_parques_dumper.py` | Contraloría + Parques dumper |
| `arcgis_discovery.py` | Multi-domain ArcGIS server scanner |
| `mass_probe.py` | 60-target mass subdomain prober |
| `wave2_dumper.py` | CAR + Bogota Cadastre + ANH dumper |
| `crtsh_gis_subdomains.json` | crt.sh subdomain enumeration results |
| `mass_probe_results.json` | Full probe results (60 targets) |
| `upra_dump.log` | UPRA dumper execution log |

### GRAND TOTAL: ~25GB, 1,082 files — ALL DUMPS COMPLETE (9 ArcGIS servers + Colombia Humana + Police AI)
