Each category file maps an indicator (API key, bot token, email,
hash, URL…) to the phishing/malware URL it was extracted from.
Nodes shared across ≥2 categories are highlighted — they often point to
the same actor/campaign/infrastructure.
Serve this repo with a static HTTP server (e.g. python3 -m
http.server, or GitHub Pages) — fetch() won't load
local files over file://.