{"repo":"AlexPGAO/honeyfile-watcher","free":true,"listed":false,"github":"https://github.com/AlexPGAO/honeyfile-watcher","clone":"git clone https://github.com/AlexPGAO/honeyfile-watcher.git","description":"Real-time intrusion detection system that monitors honeypot files and sends instant Discord alerts when unauthorized access is detected. Built for Homelabs.","language":"Python","stars":38,"topics":["cybersecurity","discord-webhook","file-monitoring","home-lab","honeypot","incident-report","intrusion-detection","linux","monitoring","python"],"license":null,"category":"analytics","readme_excerpt":"🍯 Honeyfile Monitor v2 Decoy-file intrusion detection for Linux homelabs. Plants convincing fake files (real .xlsx / .docx , not renamed text), watches them 24/7, and fires Discord/email alerts with host context the moment anything touches them. Every event lands in SQLite and a SIEM-ready JSON-lines log, with a built-in terminal-style dashboard. Built and tested on Raspberry Pi. One runtime dependency ( watchdog ) — everything else, including the Office file generators, is standard library. --- Quick start Test it from another terminal: You get a console alert, a Discord embed (if configured), a row in SQLite, and a line in events.jsonl . CLI Command What it does --- --- honeyfile init Create config.toml and .env skeleton honeyfile deploy Generate any missing decoy files ( --force to regenerate) honeyfile watch Run the monitor honeyfile events -n 20 Print recent events from the database honeyfile dashboard -o dash.html Render the HTML dashboard honeyfile dashboard --serve Live dashboard at http://127.0.0.1:8777 honeyfile test-alert [--send] Fire a fake event through the whole pipeline Configuration Everything lives in one TOML file. Secrets never go in it — they come from environment variables or a .env next to the config: Decoy generation honeyfile deploy builds real Office files by writing the OOXML zip structure directly with the standard library — no openpyxl, no python-docx. An attacker who opens the spreadsheet sees an actual spreadsheet. Files are backdated 45–400 da","default_branch":null,"files":null,"tree":[],"storefront":"/r/AlexPGAO","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/AlexPGAO/honeyfile-watcher/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}