{"repo":"opensoar-hq/opensoar-core","free":true,"listed":false,"github":"https://github.com/opensoar-hq/opensoar-core","clone":"git clone https://github.com/opensoar-hq/opensoar-core.git","description":"Open-source SOAR platform — Python-native playbooks, real-time alert ingestion, AI-ready architecture","language":"Python","stars":18,"topics":["automation","celery","fastapi","incident-response","open-source","orchestration","python","security","soar","soc"],"license":"Apache-2.0","category":"workflow-automation","readme_excerpt":"OpenSOAR Open-source SOAR platform. Write security automation in Python, not YAML. --- OpenSOAR is the orchestration and automation layer for the modern SOC. It sits between your SIEM (Elastic, Splunk) and your response tools, letting you write automation logic in plain Python — no sandboxes, no per-action billing, no vendor lock-in. Built for IR analysts and MSSPs. Dark-themed, fast, opinionated. Get running in 30 seconds: Bootstrap the first local admin: Then open http://localhost:3000 and sign in. Additional local accounts are created by an admin from Settings. When pulling updates on an existing Docker Compose deployment, use: That ensures the migration image and the application images are refreshed together during upgrades. Docs: docs.opensoar.app Self-hosted packaging: deploy/README.md --- Why OpenSOAR? vs. Open-Source Alternatives OpenSOAR Shuffle Tracecat StackStorm --- --- --- --- --- GitHub stars New 2,200 3,500 6,000 License Apache 2.0 AGPL-3.0 AGPL-3.0 Apache 2.0 Automation Python (async) Visual/JSON workflows YAML workflows YAML + Python Built-in AI Yes (free) No Yes No Integrations 5 built-in 1,000+ (app library) Growing 160+ packs Playbook style Code-first Drag-and-drop YAML definitions YAML rules + Python Backed by Community Community YC W24 Linux Foundation (minimal activity) Honest take: Shuffle and StackStorm have far more integrations today. But their approaches — drag-and-drop JSON or YAML rule files — hit a ceiling fast when you need conditional logic, p","default_branch":null,"files":null,"tree":[],"storefront":"/r/opensoar-hq","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/opensoar-hq/opensoar-core/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}